Safe
&
Sound
Threat Modeling and Holistic Security
Rory Mir
@_falsemirror
cypurr.nyc
slides.com/cypurr/safe-and-sound/
Outline:
Who are we?
Who are you?
Ground Rules
Saf(er) Space
We DO NOT tolerate demeaning/harmful language or behavior
Don't pressure or question someone discussing their experience/threat model/situation
Consent: Ask before helping someone out! From unsolicited advice to grabbing someones phone.
Keep it constructive!
Share the space!
Stack! Raise your hand, we'll queue speakers
Photo/Video- Ask for approval!
Identify yourself if you are a...
reporter, researcher, or law enforcement
Warmup
What are some things you consider when you...
Today's Scenario
What's an example scenario?
This can be real, theoretical or even fantastical (e.g. Frodo Baggins)
Holistic Approach
https://myshadow.org/
Holistic Approach
Balance > Purity Growing > Finishing
Finding Balance
Sleeping less
Taking more breaks
Support with
workload
Balance Threats
Threat Responses
Threat Modeling
ssd.eff.org
Threat Analysis
Situation (PESTLE)
Threat Analysis
Actor Mapping
You
Me
Her
Them
Info at Rest
Data in Motion
Info in Motion
Security Indicators
Security Debrief
Security Debrief
Security Planning
Include:
Which strategies are already working?
Which need work?
Security Planning Strategies
Summary
Resources
CyPurr Collective- cypurr.nyc and cypurr@protonmail.com
NYC CryptoParty and Meetup.com for other events
Freedom of the Press Foundation (Freedom.press)
Upcoming
Thank You!