<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0" xmlns:itunes="http://www.itunes.com/dtds/podcast-1.0.dtd" xmlns:googleplay="http://www.google.com/schemas/play-podcasts/1.0"><channel><title><![CDATA[Cyber Scribble: Cyber 401]]></title><description><![CDATA[This section introduces fundamental cyber security concepts and essentials for understanding digital protection in today's interconnected world.]]></description><link>https://www.cyberscribble.org/s/cyber-401</link><image><url>https://substackcdn.com/image/fetch/$s_!uI1g!,w_256,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd8b2d602-d09f-417c-a4ef-3e0ab38f2071_1080x1080.png</url><title>Cyber Scribble: Cyber 401</title><link>https://www.cyberscribble.org/s/cyber-401</link></image><generator>Substack</generator><lastBuildDate>Fri, 01 May 2026 16:01:14 GMT</lastBuildDate><atom:link href="https://www.cyberscribble.org/feed" rel="self" type="application/rss+xml"/><copyright><![CDATA[cyberscribble]]></copyright><language><![CDATA[en]]></language><webMaster><![CDATA[cyberscribble@substack.com]]></webMaster><itunes:owner><itunes:email><![CDATA[cyberscribble@substack.com]]></itunes:email><itunes:name><![CDATA[Unknown]]></itunes:name></itunes:owner><itunes:author><![CDATA[Unknown]]></itunes:author><googleplay:owner><![CDATA[cyberscribble@substack.com]]></googleplay:owner><googleplay:email><![CDATA[cyberscribble@substack.com]]></googleplay:email><googleplay:author><![CDATA[Unknown]]></googleplay:author><itunes:block><![CDATA[Yes]]></itunes:block><item><title><![CDATA[Sigiriya: The Art of Defense in Depth]]></title><description><![CDATA[A Masterpiece of Ancient Defense Architecture]]></description><link>https://www.cyberscribble.org/p/sigiriya-the-art-of-defense-in-depth</link><guid isPermaLink="false">https://www.cyberscribble.org/p/sigiriya-the-art-of-defense-in-depth</guid><dc:creator><![CDATA[Unknown]]></dc:creator><pubDate>Thu, 11 Jul 2024 14:01:53 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F70736549-14eb-4a29-8d3e-debb813d69b1_1792x1024.webp" length="0" type="image/jpeg"/><content:encoded><![CDATA[<p>We think it was the late 90s when we had the chance to visit one of the magnificent wonders in Sri Lanka called Sigiriya. One thing we remember to this day is that the moment we stepped out of our vehicle and saw the rock up close,</p><blockquote><p><strong>The intimidation and power projected by the Lion's feet .</strong></p></blockquote><p>Had an eerie feeling in our minds</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!LKEn!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F055c8b26-cb5d-4591-80be-64525f009e32_612x408.jpeg" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!LKEn!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F055c8b26-cb5d-4591-80be-64525f009e32_612x408.jpeg 424w, https://substackcdn.com/image/fetch/$s_!LKEn!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F055c8b26-cb5d-4591-80be-64525f009e32_612x408.jpeg 848w, https://substackcdn.com/image/fetch/$s_!LKEn!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F055c8b26-cb5d-4591-80be-64525f009e32_612x408.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!LKEn!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F055c8b26-cb5d-4591-80be-64525f009e32_612x408.jpeg 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!LKEn!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F055c8b26-cb5d-4591-80be-64525f009e32_612x408.jpeg" width="612" height="408" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/055c8b26-cb5d-4591-80be-64525f009e32_612x408.jpeg&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:408,&quot;width&quot;:612,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:72589,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/jpeg&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!LKEn!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F055c8b26-cb5d-4591-80be-64525f009e32_612x408.jpeg 424w, https://substackcdn.com/image/fetch/$s_!LKEn!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F055c8b26-cb5d-4591-80be-64525f009e32_612x408.jpeg 848w, https://substackcdn.com/image/fetch/$s_!LKEn!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F055c8b26-cb5d-4591-80be-64525f009e32_612x408.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!LKEn!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F055c8b26-cb5d-4591-80be-64525f009e32_612x408.jpeg 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>It was indeed a strange feeling to be caught in. Now, nearly 30 years later, when we think back about it, we are left to ponder, &#8216;Did Kashyappa and his Engineers pull off one of the best </p><blockquote><p><strong>Psychological Warfare Tactic</strong></p></blockquote><p>in Sri Lankan history, which continues to intimidate visitors to this day?</p><h3>Sigiriya: Origins</h3><p>Once upon a time, in the land of Sri Lanka, there lived a king named Dhatusena. The king was quite the player, with many wives and sons. As he aged, he wanted to hand over the throne to his rightful heir, Moggallana, the son from his royal consort.</p><p>All was going well and dull until another of the king&#8217;s sons, Kashyappa, from a non-royal consort, decided he wanted the throne for himself. He plotted a coup, colluding with the commander of the armed forces to dethrone Dhatusena.</p><p>The coup was hugely successful, and in the end, Dhatusena was walled up alive by Kashyappa. The rightful heir, Moggallana, fled to South India in fear for his life and to gain support and gather a resistance force to defeat and kill Kashyappa.</p><h3>Sigiriya: The Masterpiece</h3><p>If someone killed their own father and their half-brother is constantly plotting to avenge his death and claim the throne, naturally, that person would need extra defense around them 24/7. The solution? Build a masterpiece of architecture that is impossible for any enemy to penetrate.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!7Kjt!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F70736549-14eb-4a29-8d3e-debb813d69b1_1792x1024.webp" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!7Kjt!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F70736549-14eb-4a29-8d3e-debb813d69b1_1792x1024.webp 424w, https://substackcdn.com/image/fetch/$s_!7Kjt!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F70736549-14eb-4a29-8d3e-debb813d69b1_1792x1024.webp 848w, https://substackcdn.com/image/fetch/$s_!7Kjt!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F70736549-14eb-4a29-8d3e-debb813d69b1_1792x1024.webp 1272w, https://substackcdn.com/image/fetch/$s_!7Kjt!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F70736549-14eb-4a29-8d3e-debb813d69b1_1792x1024.webp 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!7Kjt!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F70736549-14eb-4a29-8d3e-debb813d69b1_1792x1024.webp" width="1456" height="832" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/70736549-14eb-4a29-8d3e-debb813d69b1_1792x1024.webp&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:832,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:817744,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/webp&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!7Kjt!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F70736549-14eb-4a29-8d3e-debb813d69b1_1792x1024.webp 424w, https://substackcdn.com/image/fetch/$s_!7Kjt!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F70736549-14eb-4a29-8d3e-debb813d69b1_1792x1024.webp 848w, https://substackcdn.com/image/fetch/$s_!7Kjt!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F70736549-14eb-4a29-8d3e-debb813d69b1_1792x1024.webp 1272w, https://substackcdn.com/image/fetch/$s_!7Kjt!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F70736549-14eb-4a29-8d3e-debb813d69b1_1792x1024.webp 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Above is the best reconstruction of Sigiriya we could create based on descriptions from reference sources using generative AI. Now, it is time to delve into the defense-in-depth capabilities built around and within Sigiriya!</p><h3>Sigiriya: Defense in Depth</h3><p>Sigiriya is a prime example of defense in depth in ancient history. Let's examine these features in detail as we enter the premises.</p><h5>Outer Rampart</h5><p>The first thing we encounter when we enter is the outer rampart, a defensive wall providing the first line of defense. The outer rampart is a massive earthen structure, about 130 feet wide and nearly 6 miles long. Strangely, this wall was made of mud, according to scientists [5].</p><h5><strong>Outer Moat</strong></h5><p>Once we pass the outer rampart, we are greeted by the outer moat, which is about 175 feet wide and 13 feet deep.</p><h5><strong>Plain Green Field</strong></h5><p>Once we cross Outer Moat, we are greeted with plain field.</p><h5><strong>Middle Rampart</strong></h5><p>In the middle of the plain green field, we can see the middle rampart, an additional defensive barrier between the outer and inner moats. Scientists believe this was built with bricks.</p><h5>Inner Moat</h5><p>Once we cross the middle rampart and the plain area, we are greeted by the inner moat, another defensive water body about 80 feet wide and 14 feet deep. It is believed that Kashyappa had some crocodiles roaming the area to deter sightseers and coup plotters.</p><h5><strong>Inner Rampart</strong></h5><p>The final defensive wall protecting the inner area.</p><h5><strong>Water Gardens</strong></h5><p>These gardens served not only as aesthetic elements but also as obstacles for intruders, making movement difficult and enhancing the natural defenses. </p><h5>Boulder Gardens </h5><p>Natural rock formations and strategically placed boulders created physical barriers against attackers.</p><h5>Terrace Gardens</h5><p>Terraces made the terrain challenging to navigate, slowing down and exposing attackers.</p><h5>Caves</h5><p>These caves provided strategic vantage points and hiding spots, useful for surveillance and surprise attacks.</p><h5><strong>Mirror Wall</strong></h5><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!pWst!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2e37b6df-742b-46a2-b1e3-9288db790e8b_1200x512.jpeg" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!pWst!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2e37b6df-742b-46a2-b1e3-9288db790e8b_1200x512.jpeg 424w, https://substackcdn.com/image/fetch/$s_!pWst!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2e37b6df-742b-46a2-b1e3-9288db790e8b_1200x512.jpeg 848w, https://substackcdn.com/image/fetch/$s_!pWst!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2e37b6df-742b-46a2-b1e3-9288db790e8b_1200x512.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!pWst!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2e37b6df-742b-46a2-b1e3-9288db790e8b_1200x512.jpeg 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!pWst!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2e37b6df-742b-46a2-b1e3-9288db790e8b_1200x512.jpeg" width="1200" height="512" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/2e37b6df-742b-46a2-b1e3-9288db790e8b_1200x512.jpeg&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:512,&quot;width&quot;:1200,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:74171,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/jpeg&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!pWst!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2e37b6df-742b-46a2-b1e3-9288db790e8b_1200x512.jpeg 424w, https://substackcdn.com/image/fetch/$s_!pWst!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2e37b6df-742b-46a2-b1e3-9288db790e8b_1200x512.jpeg 848w, https://substackcdn.com/image/fetch/$s_!pWst!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2e37b6df-742b-46a2-b1e3-9288db790e8b_1200x512.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!pWst!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2e37b6df-742b-46a2-b1e3-9288db790e8b_1200x512.jpeg 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>These defensive structures carved directly into the rock added difficulty and confusion for attackers. </p><h5><strong>Palace on the Summit</strong></h5><p>The summit palace, accessible only via a narrow staircase, was the final line of defense, providing a secure retreat for the king.</p><h4>Sigiriya: The Uniqly Sri lankan Measures</h4><p>Sigiriya employed several unique defensive measures which are not much found in other fortresses or castles around the world, those are</p><ol><li><p><strong>Camouflaged Fortress</strong>: The entire fortress blends seamlessly with the natural rock formation, making it difficult for attackers to identify and approach.</p></li><li><p><strong>Mirror Wall</strong>: This polished surface was used to monitor approaching enemies through reflections, providing an early warning system.</p></li><li><p><strong>Water Gardens with Hydraulic Systems</strong>: Beyond aesthetic appeal, these gardens included hidden canals and water traps that could be used to flood areas or hinder attackers.</p></li><li><p><strong>Lion's Gate</strong>: The imposing entrance, flanked by giant lion paws, served as both a psychological deterrent and a defensive choke point.</p></li><li><p><strong>Natural Rock Cisterns</strong>: Cut into the rock, these cisterns ensured a reliable water supply during sieges, maintaining the fortress&#8217;s resilience.</p></li><li><p><strong>Symmetry and Asymmetry: </strong> The blend of both symmetry and asymmetry in Sigiriya's design not only contributed to its beauty but also its effectiveness as a defensive stronghold.</p></li></ol><h3>But was it enough?</h3><p>For those wondering, did Kashyappa lived a blissful life in  that secure pleasure palace built to withstand even the toughest invasion, The Answer is &#8220;Nope! He did not&#8221;</p><p>Despite Sigiriya's formidable defenses, it ultimately fell when Moggallana, leading a force from South India and allies, declared war on Kashyappa. In the final battle, Kashyappa's strategic maneuver on his battle elephant was misinterpreted as a retreat by his army, leading to their abandonment. Too proud to surrender, Kashyappa took his dagger, cut his throat, raised the dagger proudly, sheathed it, and fell dead. </p><p>Even the most impregnable fortresses can succumb to miscommunication and human error. What a wonderful lesson.</p><p>So in short it looks like! </p><div class="pullquote"><p><strong>No matter how defensive we are physically or strategically in our battle formations and fortress-building prowess, if we are not ethically defensive enough, we will succumb to the test of time and tenacity</strong></p></div><p>Ayubowan! </p><h3>References</h3><p>[1] <a href="https://en.wikipedia.org/wiki/Sigiriya">Sigiriya Wikipedia Article</a></p><p>[2] <a href="https://calisphere.org/item/4b56eaaf4e7cc44e1553178ac134b784/">Sigiriya </a>1</p><p>[3] <a href="https://slsigiriya.com/map/">Sigiriya </a>2</p><p>[5] <a href="https://slsigiriya.com/map/">Sigiriya Map</a></p><p></p><p></p><p></p><p></p><p></p>]]></content:encoded></item><item><title><![CDATA[Android Accessibility : Enable with Caution]]></title><description><![CDATA[A convenience can always become a vulnerability.]]></description><link>https://www.cyberscribble.org/p/android-accessibility-enable-with</link><guid isPermaLink="false">https://www.cyberscribble.org/p/android-accessibility-enable-with</guid><dc:creator><![CDATA[Unknown]]></dc:creator><pubDate>Sun, 07 Jul 2024 12:51:30 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!SAnX!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8d7f3164-af7b-414b-adac-6e5f90bbe7f4_1792x1024.webp" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!SAnX!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8d7f3164-af7b-414b-adac-6e5f90bbe7f4_1792x1024.webp" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!SAnX!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8d7f3164-af7b-414b-adac-6e5f90bbe7f4_1792x1024.webp 424w, https://substackcdn.com/image/fetch/$s_!SAnX!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8d7f3164-af7b-414b-adac-6e5f90bbe7f4_1792x1024.webp 848w, https://substackcdn.com/image/fetch/$s_!SAnX!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8d7f3164-af7b-414b-adac-6e5f90bbe7f4_1792x1024.webp 1272w, https://substackcdn.com/image/fetch/$s_!SAnX!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8d7f3164-af7b-414b-adac-6e5f90bbe7f4_1792x1024.webp 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!SAnX!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8d7f3164-af7b-414b-adac-6e5f90bbe7f4_1792x1024.webp" width="643" height="367.42857142857144" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/8d7f3164-af7b-414b-adac-6e5f90bbe7f4_1792x1024.webp&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:832,&quot;width&quot;:1456,&quot;resizeWidth&quot;:643,&quot;bytes&quot;:254686,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/webp&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!SAnX!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8d7f3164-af7b-414b-adac-6e5f90bbe7f4_1792x1024.webp 424w, https://substackcdn.com/image/fetch/$s_!SAnX!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8d7f3164-af7b-414b-adac-6e5f90bbe7f4_1792x1024.webp 848w, https://substackcdn.com/image/fetch/$s_!SAnX!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8d7f3164-af7b-414b-adac-6e5f90bbe7f4_1792x1024.webp 1272w, https://substackcdn.com/image/fetch/$s_!SAnX!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8d7f3164-af7b-414b-adac-6e5f90bbe7f4_1792x1024.webp 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Android is a well-designed, simple operating system created to be secure and easy to use. However, like any complex operating system, it naturally comes with features intended for usability that may put smartphones or tablets at serious risk of infection.</p><p>Today, we are going to look into a feature that is <strong>worth caution or could be regarded as the most dangerous of all</strong>. We will also explore practices we can follow to minimize the risks.</p><h3>Accessibility</h3><p>Accessibility is a powerful Android feature (Settings &#8594; Accessibility) originally designed for people with impairments. It enables them to interact with devices by:</p><ul><li><p>Control phone through voice commands</p></li><li><p>Read screen through screen reading </p></li></ul><p>It is important to note that for those with impairments, these features are not just a convenience but essential. However, the nature of <strong>Accessibility&#8217;s modus operandi violates the principle of strict isolation</strong>, i.e., an app can listen to and control everything going on within the Android operating system.</p><h4>Non-Accessibility Apps</h4><p>Several types of apps use accessibility services for purposes that extend beyond the original intention of aiding users with disabilities. These non-accessibility uses often involve enhancing functionality or providing convenience features. Here are some common app types that use accessibility services for non-accessibility purposes::</p><ul><li><p>Automation Apps</p><ul><li><p>Ex : Automate, MacroDroid</p></li></ul></li><li><p>Password Managers</p><ul><li><p>LastPass, 1Password</p></li></ul></li><li><p>Screen Capture &amp; Recording Apps</p><ul><li><p>DU Recorder</p></li></ul></li><li><p>Overlay &amp; Floating Apps</p><ul><li><p>Bubble Cloud Widgets</p></li></ul></li><li><p>Anti-Theft &amp; Security Apps</p><ul><li><p>Cerberus</p></li></ul></li></ul><h4>Risks</h4><p>As with any feature, Accessibility can be weaponized by malicious apps. These apps can request the above permissions under the guise of Accessibility and perform malicious activities such as </p><ul><li><p>Gathering your passwords</p></li><li><p>Reading your OTP tokens </p></li><li><p>Reading private/sensitive information</p></li><li><p>So on , so forth..</p></li></ul><p>In short, an application using Accessibility can see everything happening on the Android device&#8217;s screen. It also has the capability to perform any action on the user&#8217;s behalf.</p><h4>Mitigation </h4><p>Google has implemented several mitigation measures to enhance the security and privacy of Accessibility services on Android devices.</p><ul><li><p>Permission Transparency </p><ul><li><p>User Consent : Apps must explicitly request permission to enable accessibility services </p></li><li><p>Permission Review : Users can review and manage accessibility permissions to apps</p></li></ul></li><li><p>Play Store Policies :</p><ul><li><p>Strict Guidelines : Google Play Store enforces strict guidelines for apps requesting accessibility permissions. Developers need to provide valid justification for using these services. Apps that misuses these services will be removed from the store </p></li></ul></li></ul><h3>What Can We Do ?</h3><p>We can protect ourselves from the abuses of Accessibility feature by following these practices:</p><ul><li><p>Beware of apps requesting access to Accessibility features.</p></li><li><p>Always install apps from official stores.</p></li><li><p>Regularly review your Accessibility permissions.</p></li></ul><h5>Reviewing Accessibility Permissions</h5><ol><li><p>Go to &#8220;Settings &#8212;&gt; Accessibility &#8220; in  your Android Phone.</p></li><li><p>Click &#8220;Installed Apps&#8221;.</p></li><li><p>Confirm permissions for the apps &#8220;On/Off&#8221; is as per to your intent.</p><p></p></li></ol><h3>References</h3><p>[1] <a href="https://www.kaspersky.com/blog/android-most-dangerous-features/49418/">Android Most Dangerous Features</a></p><p>[2] <a href="https://www.kaspersky.com/blog/android-restricted-settings/49991/">Restricted Setting In Android 13 and 14</a></p><p>[3] <a href="https://blog.zonealarm.com/2020/12/the-risk-of-accessibility-permissions-in-android-devices/">Risk Of Accessibility Permission In Android Devices</a></p><p>[4] <a href="https://thehackernews.com/2017/11/android-accessibility-services.html">Google Removes Play Store Apps Misusing Accessibility Services</a></p>]]></content:encoded></item><item><title><![CDATA[Phish Me Not: From Deer to Dear]]></title><description><![CDATA[Every Click Could Be a Trick!]]></description><link>https://www.cyberscribble.org/p/phishme-not-from-deer-to-dear</link><guid isPermaLink="false">https://www.cyberscribble.org/p/phishme-not-from-deer-to-dear</guid><dc:creator><![CDATA[Unknown]]></dc:creator><pubDate>Thu, 23 May 2024 12:48:29 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!kl9l!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9dfee96c-6931-4127-8674-f0637e37c407_1792x1024.webp" length="0" type="image/jpeg"/><content:encoded><![CDATA[<p>Hi Friends! Hope this post finds you well. We are going to start with a <a href="https://www.poetryfoundation.org/poems/42891/stopping-by-woods-on-a-snowy-evening">little poem</a> today, it goes like this!</p><div class="pullquote"><p>The internet is lovely, dark, and deep, </p><p>With layers of <strong>phish</strong> and <strong>spam</strong> that creep,</p><p>But <strong>we must not click</strong>, lest we be sheep, </p><p> we have <strong>secrets to keep</strong>,</p><p>miles to <strong>swipe</strong> before we sleep,</p><p>and miles to <strong>swipe</strong> before we sleep.</p></div><p>Ah, We always loved<a href="https://en.wikipedia.org/wiki/Robert_Frost"> Robert Frost</a>. Such a wonderful poet! </p><p>Anyway, as some of you might have guessed, today we are gonna &#8216;fish&#8217; you with some interesting stories from the past to create some awareness about &#8216;phishing attacks&#8217;. let&#8217;s scribble it!</p><h4>The Golden Deer  : Ancient Phish</h4><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!kl9l!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9dfee96c-6931-4127-8674-f0637e37c407_1792x1024.webp" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!kl9l!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9dfee96c-6931-4127-8674-f0637e37c407_1792x1024.webp 424w, https://substackcdn.com/image/fetch/$s_!kl9l!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9dfee96c-6931-4127-8674-f0637e37c407_1792x1024.webp 848w, https://substackcdn.com/image/fetch/$s_!kl9l!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9dfee96c-6931-4127-8674-f0637e37c407_1792x1024.webp 1272w, https://substackcdn.com/image/fetch/$s_!kl9l!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9dfee96c-6931-4127-8674-f0637e37c407_1792x1024.webp 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!kl9l!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9dfee96c-6931-4127-8674-f0637e37c407_1792x1024.webp" width="1456" height="832" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/9dfee96c-6931-4127-8674-f0637e37c407_1792x1024.webp&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:832,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:458494,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/webp&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!kl9l!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9dfee96c-6931-4127-8674-f0637e37c407_1792x1024.webp 424w, https://substackcdn.com/image/fetch/$s_!kl9l!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9dfee96c-6931-4127-8674-f0637e37c407_1792x1024.webp 848w, https://substackcdn.com/image/fetch/$s_!kl9l!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9dfee96c-6931-4127-8674-f0637e37c407_1792x1024.webp 1272w, https://substackcdn.com/image/fetch/$s_!kl9l!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9dfee96c-6931-4127-8674-f0637e37c407_1792x1024.webp 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><h5>The Background</h5><p>Once upon a time, long, long ago, there lived a charming prince named Ram. Due to a bit of royal trouble, he, his wife, Sita, and his brother found themselves taking a sabbatical in the deep forest.</p><p>While living in the forest, Ram had a bit of a beef with a mischievous villain named Ravana. Ravana was quite smitten with Sita! It got to a point where he wanted to kidnap her and take her back to his beautiful island called <a href="https://en.wikipedia.org/wiki/Sri_Lanka">Lanka</a> to show her off to his friends and Instagram followers.</p><p>As Ravana pondered the plan to kidnap Sita, his brother Maricha, who was skilled at 'Trick or Treat' casually approached him for a night out in the city. This sparked an innovative idea in Ravana&#8217;s mind. he asked!</p><blockquote><p><em><strong>&#8220;Hey Maricha! How about I pay you to pull a &#8216;Trick or Treat&#8217; on Ram and his gang?&#8221;</strong></em></p></blockquote><p>Maricha, being the business magnet in the family replied! </p><blockquote><p><em>"<strong>Sure, bro, if the pay is right, I'm in!"</strong></em></p></blockquote><h5>The Ancient Phish</h5><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!9b2P!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F20c63275-14db-473b-8f30-facc763b364a_1792x1024.webp" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!9b2P!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F20c63275-14db-473b-8f30-facc763b364a_1792x1024.webp 424w, https://substackcdn.com/image/fetch/$s_!9b2P!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F20c63275-14db-473b-8f30-facc763b364a_1792x1024.webp 848w, https://substackcdn.com/image/fetch/$s_!9b2P!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F20c63275-14db-473b-8f30-facc763b364a_1792x1024.webp 1272w, https://substackcdn.com/image/fetch/$s_!9b2P!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F20c63275-14db-473b-8f30-facc763b364a_1792x1024.webp 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!9b2P!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F20c63275-14db-473b-8f30-facc763b364a_1792x1024.webp" width="1456" height="832" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/20c63275-14db-473b-8f30-facc763b364a_1792x1024.webp&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:832,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:844454,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/webp&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!9b2P!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F20c63275-14db-473b-8f30-facc763b364a_1792x1024.webp 424w, https://substackcdn.com/image/fetch/$s_!9b2P!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F20c63275-14db-473b-8f30-facc763b364a_1792x1024.webp 848w, https://substackcdn.com/image/fetch/$s_!9b2P!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F20c63275-14db-473b-8f30-facc763b364a_1792x1024.webp 1272w, https://substackcdn.com/image/fetch/$s_!9b2P!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F20c63275-14db-473b-8f30-facc763b364a_1792x1024.webp 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>One sunny day, Ram, Sita, and Lakshman were strolling through the forest, digesting a hefty brunch. Maricha appeared in front of them disguised as a 'Dazzling Golden Deer.'</p><p>Sita was instantly smitten and mesmerized by the beauty of the golden deer. She exclaimed,</p><blockquote><p><em><strong>Hey Ram! I want to have that Deer , Can you get one for me dear ? please !</strong> </em></p></blockquote><p>Ram, ever the devoted and sweet husband, sprinted off after the shiny deer.</p><p>Time ticked by from minutes to hours as Ram chased the elusive deer for his dear through the forest. Worried, Sita insisted  that Lakshman check on Ram, in compliance to Sita&#8217;s request Lakshman also dashed off in search of his brother.</p><p>While alone, Sita was scooped up by Ravana, turning this forest tale into a full-blown rescue mission.</p><p>Sad! </p><p>Let&#8217;s jump time ships and fast ward to 2010, </p><h4>Enter the Dear:  Robin Sage</h4><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!JrLO!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd8eb70ee-128d-4f6a-a010-f8f3c66e4058_1792x1024.webp" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!JrLO!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd8eb70ee-128d-4f6a-a010-f8f3c66e4058_1792x1024.webp 424w, https://substackcdn.com/image/fetch/$s_!JrLO!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd8eb70ee-128d-4f6a-a010-f8f3c66e4058_1792x1024.webp 848w, https://substackcdn.com/image/fetch/$s_!JrLO!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd8eb70ee-128d-4f6a-a010-f8f3c66e4058_1792x1024.webp 1272w, https://substackcdn.com/image/fetch/$s_!JrLO!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd8eb70ee-128d-4f6a-a010-f8f3c66e4058_1792x1024.webp 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!JrLO!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd8eb70ee-128d-4f6a-a010-f8f3c66e4058_1792x1024.webp" width="1456" height="832" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/d8eb70ee-128d-4f6a-a010-f8f3c66e4058_1792x1024.webp&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:832,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:325228,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/webp&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!JrLO!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd8eb70ee-128d-4f6a-a010-f8f3c66e4058_1792x1024.webp 424w, https://substackcdn.com/image/fetch/$s_!JrLO!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd8eb70ee-128d-4f6a-a010-f8f3c66e4058_1792x1024.webp 848w, https://substackcdn.com/image/fetch/$s_!JrLO!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd8eb70ee-128d-4f6a-a010-f8f3c66e4058_1792x1024.webp 1272w, https://substackcdn.com/image/fetch/$s_!JrLO!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd8eb70ee-128d-4f6a-a010-f8f3c66e4058_1792x1024.webp 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Thomas Ryan, a cool security researcher, decided to see whether smartest people in the world would be attracted to any &#8216;<strong>Golden Dear</strong>&#8217;. He whipped up a fake persona online, named her <a href="https://en.wikipedia.org/wiki/Robin_Sage">Robin Sage</a> with a profile pic of an attractive lady. Claiming she was a top-tier cybersecurity analyst. </p><p>As Robin flicked her digital eyelashes across social networks, she had hundreds of bigshots from the military, spy circles, and Fortune 500 companies gobbling up to her virtual breadcrumbs of seduction. These top-tier players spilled secrets like they were swapping office gossip, completely mesmerized by her charming profile and knockout photo.</p><p>If you all want to learn more about this <a href="https://www.google.com/search?q=The+Robin+Sage+Experiment">peek here</a>. </p><h4>Oh Dear ! The 25 Million $$ Phish </h4><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!0dCo!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9c1955ec-f681-4e5b-9709-c79e3a5d12e9_1792x1024.webp" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!0dCo!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9c1955ec-f681-4e5b-9709-c79e3a5d12e9_1792x1024.webp 424w, https://substackcdn.com/image/fetch/$s_!0dCo!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9c1955ec-f681-4e5b-9709-c79e3a5d12e9_1792x1024.webp 848w, https://substackcdn.com/image/fetch/$s_!0dCo!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9c1955ec-f681-4e5b-9709-c79e3a5d12e9_1792x1024.webp 1272w, https://substackcdn.com/image/fetch/$s_!0dCo!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9c1955ec-f681-4e5b-9709-c79e3a5d12e9_1792x1024.webp 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!0dCo!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9c1955ec-f681-4e5b-9709-c79e3a5d12e9_1792x1024.webp" width="1456" height="832" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/9c1955ec-f681-4e5b-9709-c79e3a5d12e9_1792x1024.webp&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:832,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:530158,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/webp&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!0dCo!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9c1955ec-f681-4e5b-9709-c79e3a5d12e9_1792x1024.webp 424w, https://substackcdn.com/image/fetch/$s_!0dCo!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9c1955ec-f681-4e5b-9709-c79e3a5d12e9_1792x1024.webp 848w, https://substackcdn.com/image/fetch/$s_!0dCo!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9c1955ec-f681-4e5b-9709-c79e3a5d12e9_1792x1024.webp 1272w, https://substackcdn.com/image/fetch/$s_!0dCo!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9c1955ec-f681-4e5b-9709-c79e3a5d12e9_1792x1024.webp 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Welcome to  2024, and let&#8217;s open the scene in Asia, <a href="https://www.cnn.com/2024/02/04/asia/deepfake-cfo-scam-hong-kong-intl-hnk/index.html">A finance worker at a multinational firm in Hong Kong</a> was deceived into authorizing a $25 million payout to hackers who used <a href="https://www.cyberscribble.org/p/deepfake-alert-could-we-be-next">Deepfake AI technology</a>. </p><p>The worker was duped in to <strong>getting on a video call with familiar faces</strong> on the other end which made the worker believe that he was interacting with actual colleagues, but they were actually computer generated videos of co-workers. </p><p>We are going to stop our stories here and jump in to our &#8216;Phishing Awareness&#8217; propaganda bandwagon AGAIN!, Let&#8217;s scribble on! </p><h4>What is a &#8216;Phishing Attack&#8217;</h4><p>A phishing attack is a scam in which someone impersonates a trusted entity, such as a deer, dear , bank, relative or friend, with the intention of deceiving you into divulging sensitive information, such as passwords or credit card numbers. This is typically done through E-mail, SMS, Call or fake websites.</p><h4>Phishing : Where strengths become weakness </h4><p>In all of these stories above ,attackers preyed on several human traits to pull these heists off , those are; </p><ul><li><p>Curiosity.</p></li><li><p>Urgency.</p></li><li><p>Obligation.</p></li><li><p>Commitment.</p></li><li><p>Love.</p></li><li><p>Empathy.</p></li><li><p>Fear.</p></li><li><p>Duty.</p></li></ul><h4>How to spot a phish ?</h4><ul><li><p>A message preying on human traits mentioned above.</p></li><li><p>Inducing an urgent reaction. </p></li><li><p>Comes with a &#8216;Call to Action&#8217; such as.</p><ul><li><p>Click a link.</p></li><li><p>Call.</p></li><li><p>Reply.</p></li></ul></li></ul><h4>Channels of phishing ! </h4><ul><li><p>SMS.</p></li><li><p>E-Mail.</p></li><li><p>Instant Messengers  ( Facebook Messenger, WhatsApp messenger  etc.  ).</p></li><li><p>Phone Calls.</p></li><li><p>Video Calls .</p></li></ul><h4>I got phished! What should I do ?</h4><ul><li><p>Change your passwords.</p></li><li><p>Report the incident.</p></li><li><p>Monitor your accounts.</p></li><li><p>Do a virus  scan on your PC / mobile.</p><p></p></li></ul><p>Most importantly &#8216;Keep Calm and Act Vigilant&#8217;.</p><h4>References</h4><p>[1] <a href="https://www.cnn.com/2024/02/04/asia/deepfake-cfo-scam-hong-kong-intl-hnk/index.html">25 Million Dollar Phishing Attack</a></p><p>[2] <a href="https://en.wikipedia.org/wiki/Robin_Sage">Robin Sage</a></p><p>[3] <a href="https://www.cyber.gc.ca/en/guidance/dont-take-bait-recognize-and-avoid-phishing-attacks">Phishing Attacks</a> </p>]]></content:encoded></item><item><title><![CDATA[Jason and the quest for the Golden Fleece]]></title><description><![CDATA[Discover the Ancient Wisdom Behind Modern Defense Philosophies]]></description><link>https://www.cyberscribble.org/p/jason-and-the-quest-for-the-golden</link><guid isPermaLink="false">https://www.cyberscribble.org/p/jason-and-the-quest-for-the-golden</guid><dc:creator><![CDATA[Unknown]]></dc:creator><pubDate>Fri, 26 Apr 2024 10:26:23 GMT</pubDate><enclosure url="https://substack-post-media.s3.amazonaws.com/public/images/da625f11-1cb4-40f6-8646-fdeb2eaba387_1792x1024.webp" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!goQa!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3d84e913-c921-4107-b170-3f03a8790b97_1792x1024.webp" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!goQa!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3d84e913-c921-4107-b170-3f03a8790b97_1792x1024.webp 424w, https://substackcdn.com/image/fetch/$s_!goQa!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3d84e913-c921-4107-b170-3f03a8790b97_1792x1024.webp 848w, https://substackcdn.com/image/fetch/$s_!goQa!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3d84e913-c921-4107-b170-3f03a8790b97_1792x1024.webp 1272w, https://substackcdn.com/image/fetch/$s_!goQa!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3d84e913-c921-4107-b170-3f03a8790b97_1792x1024.webp 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!goQa!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3d84e913-c921-4107-b170-3f03a8790b97_1792x1024.webp" width="1456" height="832" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/3d84e913-c921-4107-b170-3f03a8790b97_1792x1024.webp&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:832,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:591416,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/webp&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!goQa!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3d84e913-c921-4107-b170-3f03a8790b97_1792x1024.webp 424w, https://substackcdn.com/image/fetch/$s_!goQa!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3d84e913-c921-4107-b170-3f03a8790b97_1792x1024.webp 848w, https://substackcdn.com/image/fetch/$s_!goQa!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3d84e913-c921-4107-b170-3f03a8790b97_1792x1024.webp 1272w, https://substackcdn.com/image/fetch/$s_!goQa!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3d84e913-c921-4107-b170-3f03a8790b97_1792x1024.webp 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Good day Everyone! It's time for another round of mythological scribble. Today, we're diving into a tale to understand how our ancestors programmed our subconscious minds with <strong>apex-secret</strong> defense wisdom. </p><p>You see, a wise woman once blurted out that humanity&#8217;s march toward progress&#8212;and beyond!&#8212;kicked off with,</p><div class="pullquote"><p>little stories our folks, their folks, and yes, even their folks&#8217; folks </p></div><p>spun for us through the ages. MAY be that&#8217;s why we call them <strong>folklores</strong> then. Buckle up, it's story time!</p><h4>Jason and the Quest for the Golden Fleece</h4><p>Once upon a time in ancient Greece, there was a young boy named Jason who faced a rather tricky family issue. His uncle Pelias had cunningly grabbed the throne from Jason&#8217;s father. </p><p>One fine day, Jason approached his uncle Pelias and said, </p><blockquote><p>"Hey uncle , I need my throne back! What do you think?&#8221; </p></blockquote><p>But Uncle Pelias, who is always in the lead even on his day off, proposed a seemingly impossible challenge. He was like, </p><blockquote><p>&#8220;Sure, buddy, you can be king&#8212;just as soon as you fetch me the Golden Fleece. I need it for my retirement. I&#8217;m sure it&#8217;s no big deal for a hero like you.&#8221;</p></blockquote><p>Jason, who has been ONLY binging &#8220;One Piece&#8221; on Netflix till that day accepted the challenge and gathered a team of warriors. Together, they set sail to grab the &#8220;Golden Fleece&#8221; in a ship called Argo. </p><p>We can hear your mind voice going , </p><blockquote><p>&#8220;Didn&#8217;t Jason just copy one piece plot?&#8221;. </p></blockquote><p>We don&#8217;t blame him, remember &#8220;Never reinvent the wheel&#8221; if a plan works, stick to it until it doesn&#8217;t work. Ahem Ahem!</p><p>Now let&#8217;s move to the important part of this story.</p><h4>Defense in Depth</h4><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!qMfV!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F161c822a-4b0e-45b3-b459-9cdd0fcc2baa_1792x1024.webp" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!qMfV!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F161c822a-4b0e-45b3-b459-9cdd0fcc2baa_1792x1024.webp 424w, https://substackcdn.com/image/fetch/$s_!qMfV!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F161c822a-4b0e-45b3-b459-9cdd0fcc2baa_1792x1024.webp 848w, https://substackcdn.com/image/fetch/$s_!qMfV!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F161c822a-4b0e-45b3-b459-9cdd0fcc2baa_1792x1024.webp 1272w, https://substackcdn.com/image/fetch/$s_!qMfV!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F161c822a-4b0e-45b3-b459-9cdd0fcc2baa_1792x1024.webp 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!qMfV!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F161c822a-4b0e-45b3-b459-9cdd0fcc2baa_1792x1024.webp" width="1456" height="832" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/161c822a-4b0e-45b3-b459-9cdd0fcc2baa_1792x1024.webp&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:832,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:270176,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/webp&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!qMfV!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F161c822a-4b0e-45b3-b459-9cdd0fcc2baa_1792x1024.webp 424w, https://substackcdn.com/image/fetch/$s_!qMfV!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F161c822a-4b0e-45b3-b459-9cdd0fcc2baa_1792x1024.webp 848w, https://substackcdn.com/image/fetch/$s_!qMfV!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F161c822a-4b0e-45b3-b459-9cdd0fcc2baa_1792x1024.webp 1272w, https://substackcdn.com/image/fetch/$s_!qMfV!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F161c822a-4b0e-45b3-b459-9cdd0fcc2baa_1792x1024.webp 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>After setting sail and hitting up some online forums for some quick tips, Jason quickly realized that snagging the Golden Fleece wasn&#8217;t going to be a walk in the park. Apparently, some overly cautious &#8220;Security Architect&#8221; had gone all out with the home security system in Colchis[ the place where the &#8220;Golden Fleece&#8221; was kept]. </p><p>Here&#8217;s what our poor hero Jason was up against:</p><ul><li><p><strong>Location:</strong> The Golden Fleece was stashed in Colchis, a land as unwelcoming as <a href="https://en.wikipedia.org/wiki/Kong:_Skull_Island">Skull Island</a>. It featured dangerous seas and creatures not there to make friends, or had accounts on Instagram. Moreover, the locals certainly didn&#8217;t wave hello or accept any friend requests on Facebook.</p></li><li><p><strong>Physical Defenses:</strong> The Security Architect also  had hired a dragon, not the sleepy kind that might ignore a sneaky hero. No, this dragon loved its job, curling around the tree holding the fleece like it was the latest dragon yoga trend.</p></li><li><p><strong>Magical Protection:</strong> As if a hyperactive dragon wasn&#8217;t enough, The Security Architect threw in some magic spells and enchantments. Basically, the fleece was wrapped up tighter than a top-level government secret with clearance level APEX-SECRET.</p></li></ul><p>As you see, it is clearly evident that Jason had to break multitude of difficulties to get to the Prize &#8220;Golden Fleece&#8221;, this is called &#8220;Defense in depth&#8221;</p><h4>What is &#8220;Defense in Depth&#8221; , A Technical Take?</h4><blockquote><p>Defense in depth is <em><strong>a strategy that leverages multiple security measures to protect an organization's assets</strong></em></p></blockquote><p>For example, in securing a typical asset our modern  day &#8220;Security Professionals&#8221; employ mix of several strategies, Some of them are </p><ul><li><p>Physical Security : Fence , Cameras, Security Guards </p></li><li><p>Perimeter Security : Firewalls, Intrusion Detection Systems</p></li><li><p>Endpoint Protection : Virus Scanners , Anti-Virus softwares</p></li><li><p>Access Controls : Ex : You got to have password / username to login to your office computer</p></li></ul><p>Cool, Pretty much this is what &#8220;Defense in Depth&#8221; is about </p><p>If anyone wondering what happened to &#8220;Jason&#8221; ?</p><p>Turns out, Jason, armed with nothing but his wits and a bunch of online how to guides, managed to crack through all those defenses and snatch up the Golden Fleece. Along the way, he even managed to snag himself a girl and lived happily ever after, He is posting his epic moments on Instagram for all the world to envy! </p><p>So, next time you're gazing up at the stars, give a little wave to our  ancestors and their sneaky story telling skills. Who knew those bedtime stories would come in handy for us in our modern age? </p><p></p><p></p>]]></content:encoded></item><item><title><![CDATA[Hunting Threats with STRIDE]]></title><description><![CDATA[using STRIDE]]></description><link>https://www.cyberscribble.org/p/determining-threats</link><guid isPermaLink="false">https://www.cyberscribble.org/p/determining-threats</guid><dc:creator><![CDATA[Unknown]]></dc:creator><pubDate>Fri, 15 Mar 2024 11:27:00 GMT</pubDate><enclosure url="https://substack-post-media.s3.amazonaws.com/public/images/ace4284e-4468-4fee-90ce-192454522a3e_1792x1024.webp" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="pullquote"><p><strong>What's does throwing a rave party at your neighbor's house and deed forgery have in common?</strong></p></div><p>Every threat modelling consists 5 step process , We are going to explain them in the &#8220;Baking the Cake&#8221; analogy </p><ol><li><p>Scoping the work : Planning cake size.</p></li><li><p><strong>Determining threats : </strong>Spotting sneaky dangers on our cake making, detective-style</p></li><li><p>Defining controls : Layering protective measures.</p></li><li><p>Assessing your controls : Checking for readiness</p></li><li><p>Monitoring : Keeping a watch, baker-style.</p></li></ol><p>Today out of all days we are going to be using STRIDE methodology to protect our humble House. Get ready for a <strong>systematic safari through the jungle of potential hazards</strong> lurking in every nook and cranny to harm our house!</p><h4>What is STRIDE ? </h4><p>Imagine STRIDE like a magnifying glass for cybersecurity. It helps us spot and understand different types of threats lurking in the jungle. Each letter in STRIDE stands for a different kind of threat: Spoofing, Tampering, Repudiation, Information Disclosure, Denial of Service, and Elevation of Privilege. It's like having a cheat sheet to protect yourself from all sorts of cyber shenanigans!</p><h5>S<strong>poofing</strong></h5><p>Spoofing is like a sneaky disguise. It's when someone pretends to be something they're not. For our house we have identified following threats for spoofing, </p><ul><li><p>Putting a &#8220;For Sale&#8221; sign in front of the house without owner&#8217;s consent</p></li><li><p>Pretending to be the owner of the house and using a fake key to gain access</p></li></ul><h5>Tampering</h5><p>Tampering is like sneaking into a puzzle box and rearranging the pieces, messing with the original design or function. For our house we have identified following threats in this category, </p><ul><li><p>Someone entering the house and rearranging all the furniture when no one is looking </p></li><li><p>Swapping the pictures on walls with theif&#8217;s own pictures</p></li><li><p>Swapping Sugar label with Salt label ( ouch )</p></li></ul><h5>Repudiation</h5><p>Repudiation is like eating the last cookie and denying you ever touched the cookie jar. For our house we have identified following threats in this category, </p><ul><li><p>Unauthorized lease agreement without the consent of the owner </p></li></ul><h5>Information Disclosure</h5><p>"Information Disclosure" is like spilling the tea on Taylor Swift's latest gossip to the entire neighborhood. For our house we have identified following threats in this category, </p><ul><li><p>Disclosing house floor plans and lock keys </p></li><li><p>Disclosing personal information of house inhabitants </p></li></ul><h5>Denial of Service</h5><p>Denial of Service is like your mom changing the Wi-Fi password just as you're about to binge-watch your favorite show. For our house we have identified following threats in this category</p><ul><li><p>Triggering power grid overload by malicious actor</p></li><li><p>Earthquake and Cyclones destroying the house </p></li></ul><h5>Escalation of Privileges</h5><p>Escalation of privileges is like your daughter sneaking her report card into your stack of signed documents, hoping you won't notice. For our house we have identified following threats</p><ul><li><p>A neighbors teenager hosting a rave house party for friends </p></li><li><p>Forgery of property deed and transferring ownership to a third party </p></li></ul><h3>Ranking /rating threats</h3><p>Now that we've got a handle on the threats lurking around, it's time to size them up in terms of risk. To make life easier, we're going to use a qualitative risk model, taking into account the following factors</p><h5>Impact</h5><ul><li><p>The damage potential</p></li><li><p>Breadth of the damage</p></li></ul><h5>Possibility/Likelihood</h5><ul><li><p>How often would this threat occur ?</p></li></ul><h5>Ease of Exploitation</h5><ul><li><p>How easy is it to discover it ?</p></li><li><p>How easy it is to exploit once discovered ? </p></li><li><p>Is it possible to reproduce by everyone ?</p></li></ul><p>Now, let&#8217;s break down our identified threats for Impact, Likelihood, and Ease of Exploitation. I've compiled them neatly into a table below. Feel free to zoom in if needed for better clarity.</p><div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!2zvW!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8a9628da-72f8-4f1a-8ac9-7942672df25b_1828x428.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!2zvW!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8a9628da-72f8-4f1a-8ac9-7942672df25b_1828x428.png 424w, https://substackcdn.com/image/fetch/$s_!2zvW!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8a9628da-72f8-4f1a-8ac9-7942672df25b_1828x428.png 848w, https://substackcdn.com/image/fetch/$s_!2zvW!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8a9628da-72f8-4f1a-8ac9-7942672df25b_1828x428.png 1272w, https://substackcdn.com/image/fetch/$s_!2zvW!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8a9628da-72f8-4f1a-8ac9-7942672df25b_1828x428.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!2zvW!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8a9628da-72f8-4f1a-8ac9-7942672df25b_1828x428.png" width="1456" height="341" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/8a9628da-72f8-4f1a-8ac9-7942672df25b_1828x428.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:341,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:157303,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!2zvW!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8a9628da-72f8-4f1a-8ac9-7942672df25b_1828x428.png 424w, https://substackcdn.com/image/fetch/$s_!2zvW!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8a9628da-72f8-4f1a-8ac9-7942672df25b_1828x428.png 848w, https://substackcdn.com/image/fetch/$s_!2zvW!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8a9628da-72f8-4f1a-8ac9-7942672df25b_1828x428.png 1272w, https://substackcdn.com/image/fetch/$s_!2zvW!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8a9628da-72f8-4f1a-8ac9-7942672df25b_1828x428.png 1456w" sizes="100vw" loading="lazy"></picture><div></div></div></a></figure></div><p>Now that we've categorized Impact, Likelihood of Occurrence, and Ease of Exploitation into three levels each (Low, Medium, High), let's assign numerical values accordingly: Low = 1, Medium = 2, High = 3.</p><p>Next, we'll assign weights to these factors based on their significance. For instance</p><ul><li><p>Impact: 40%</p></li><li><p>Likelihood of Occurrence: 40%</p></li><li><p>Ease of Exploitation: 20%</p></li></ul><p>Formula to calculate the threat score we can define as bellow for our purpose </p><div class="latex-rendered" data-attrs="{&quot;persistentExpression&quot;:&quot;Total = ( Impact * Impact Weight ) + ( Likelihood * Likelihood Weight ) + ( EOE * EOE Weight )&quot;,&quot;id&quot;:&quot;JVQIYFVIKP&quot;}" data-component-name="LatexBlockToDOM"></div><p>Using the provided weights and numerical values, you'll compute the total threat score for each threat by inputting the values for Impact, Likelihood of Occurrence, and Ease of Exploitation.</p><p>For instance, let's take the scenario of "Earthquake and Cyclones destroying the house," where Impact is High, Likelihood of Occurrence is Low, and Ease of Exploitation is Low. Using the assigned values/weights, the calculation would be</p><blockquote><p>Score =(3&#215;0.4)+(1&#215;0.4)+(1&#215;0.2) = 1.8</p></blockquote><p>By this, we can systematically assess and prioritize threats. This approach enables us to focus our resources on mitigating the most critical risks, thereby enhancing the overall security and resilience of our systems and of course Houses</p><p>Did you catch that? Turns out, throwing an illegal rave party next door and forging a lease have the same threat value as per to our analysis above. </p><p></p><p></p><p></p><p></p>]]></content:encoded></item></channel></rss>