Purplecon 2019 brendan shaklovitz, face your fearful foes to dodge a dark and dreary phishy fate, https://purplecon.nz/talks#brendan-shaklovitz, https://www.youtube.com/watch?v=yNEnlcTgfnQ&list=PLS45xFo74VF546tbfXXtKDO03cVrAalM6&index=11&t=0s

after a short stint with the malicious masterminds of our red team, i've seen the terrifying tactics that real attackers could use against you. it's dirty, underhanded, and quite brilliant, and it's only fair that we level the playing field a bit by sharing some of our secrets. in this talk we'll skip past basic tech-support scams and talk about lovingly hand-crafted “spear phishing” campaigns specifically targeting individuals based on publicly available information. who knew your gaming habits would be your downfall? and finally we'll talk about some things you can do to really ruin a fledgeling evil mastermind's day, and repurposing some strategies learned from a career in site reliability engineering to help create a psychologically safe environment where people aren't afraid to tell you when they make mistakes.