Finally wrote a book -- well, an eBook!
Called: The hacker's guide to securing your organization
All my security recommendations based on my hacking expertise (how you can stop me in the act).
Partnered with
npub1rv5svmxg5j7p0gw8xz3mymh8sqlhxyjwcrzxm6tdkcuhfx6h8tcscqz2l6 (npub1rv5…z2l6) to write this free resource for you!
https://bitwarden.com/how-to-stop-cyber-criminals/?utm_campaign=%5BGM%5D%20Rachel%20Tobac%20eBook&utm_source=all-tobac
It was so fun working with
npub1rv5svmxg5j7p0gw8xz3mymh8sqlhxyjwcrzxm6tdkcuhfx6h8tcscqz2l6 (npub1rv5…z2l6) my team, and my designer to build this book for you! I get asked often “Have you written a book? I want to get it for my team!” and now I can finally say yes and give folks a *free* book. How fun!
I cover a lot in this eBook!
- The principles of persuasion
- Manipulating urgency: exploiting time pressure to hack
- How to protect your organization and yourself including: how to create a strong first line of defense, creating security 1st culture, using unique passwords and password managers, the right MFA for your threat model, and how to Be Politely Paranoid
- How hacking works: OSINT, password dumps, phishing, social engineering (to name only a few points of entry)
- Threat modeling 101: VIPs and beyond
- How AI has changed how we hack and how to protect against new methods
- The passkey revolution and more!
Also enjoyed covering emerging hacking methods — like the use of AI in hacks like this: https://x.com/racheltobac/status/1660432071003881474?s=46&t=NyA6Hhhifs99eqUAKlHl2Q
What may surprise you is that attacks using AI can still be thwarted using similar defense methods: long, random, unique passwords stored safely, the right MFA for your threat model, and being politely paranoid (using 2 methods of communication to confirm people are who they say they are)!
Also exciting to cover passkeys! We’re right at the start of the passwordless revolution and it’s so cool to see the world start to move toward passkeys — funny enough, I’m currently on the front page of npub1l9mxtfl52nk3hf0qaerpst472f38t7vx4ak22setcmrws3qufkhsud5t7u (npub1l9m…5t7u) right now because Google just turned on default passkeys for Gmail and folks want to learn more!