Bad OPSEC Considered Harmful
buttondown.com·1d
🔓Hacking
Preview
Report Post

Bad Opsec Considered Harmful

I recently became aware of a GitHub repository collecting “Bad OPSEC” cases—instances where people were caught due to mistakes that allowed investigators to identify them.1 It’s a decent resource for the student of operational security, but one glaring issue stood out. The first line of the README, and presumably the rationale for the repository itself:

“The best way to learn about opsec is to learn how people fail.”

I believe this is categorically false. Learning from failures is probably the second

Similar Posts

Loading similar posts...