Get the latest tech news

Defenders think in lists, attackers think in graphs (2015)


Shared Blogs and Notebooks. Contribute to JohnLaTwC/Shared development by creating an account on GitHub.

A lot of network defense goes wrong before any contact with an adversary, starting with how defenders conceive of the battlefield. Defenders are awash in lists of assets—in system management services, in asset inventory databases, in BCDR spreadsheets. Attackers study the infrastructure as it is—not as an inaccurate mental model, viewed from an incomplete asset inventory system, or a dated network diagram.

Get the Android app

Or read this on Hacker News

Read more on:

Photo of Graphs

Graphs

Photo of defenders

defenders

Photo of attackers

attackers

Related news:

News photo

Data Exfiltration from Slack AI via indirect prompt injection

News photo

ATM Software Flaws Left Piles of Cash for Anyone Who Knew to Look

News photo

How Diaries Evolved from Lists to Personal Histories