completed
Community Cyber Security Support
Current Project Status
complete
Total
amount
Received
$120,000
Total
amount
Requested
$120,000
Total
Percentage
Received
100.00%
$120,000 Received out of $120,000
Solution

Awareness, knowledge, and having an easy place to find this information will help community members. I want to do to things. 1) Help the individual, 2) Help new teams. At no cost to them.

Problem

With technology, comes opportunities for bad actors to maliciously take advantage of and scam many individuals. This has always been a large ongoing challenge, and the blockchain space is not immune.

Impact / Alignment
Feasibility
Auditability

Team

1 member

This proposal was approved and funded by the Cardano Community via Project F9: Dapps, Products & Integrations Catalyst funding round.

[IMPACT] Please describe your proposed solution.

Cyber/Information Security is an ongoing fight against the bad actors (scammers, malicious activity) and building awareness among users and teams.

I have always been a proponent of taking information and making it easy to find and understand. Often times, information is spread out far and wide. In addition, it is typically not designed for both non-technical, and technical minded folks to both understand.

I want to provide several services to help improve this problem:

  • Site for knowledge sharing

  • Meetings to review Cyber Security Topics and Reviews for Teams

  • Meetings to train individuals, and to review questions from individuals

    [IMPACT] Please describe how your proposed solution will address the Challenge that you have submitted it in.

My proposed solution will address the challenge in the following ways:

  • Build awareness among daily users, reducing the overall success of bad actors and scammers, and improving safety for the community and users.

  • Build security and confidence of teams building new applications in the ecosystem.

  • Improve knowledge among everyone, effectively creating the footprint of knowing how to protect oneself and sharing that knowledge broadly.

  • Create a place for individuals and teams to learn and educate on social engineering, phishing, intrusions, and many more types of attacks, to include current and most common threats.

    [IMPACT] What are the main risks that could prevent you from delivering the project successfully and please explain how you will mitigate each risk?

Potential Risks:

  • I prefer to call these awareness items for this effort, in which I need to stay alert of.

  • Providing knowledge to individuals and teams in such a way that it is easy to understand and take action on.

  • Staying up to date and aware of new and emerging attacks myself.

  • Dev/website design and building

    [FEASIBILITY] Please provide a detailed plan, including timeline and key milestones for delivering your proposal.

Outlined Plan:

  • Q3 2022:

  • Schedule 3 meetings per week (Mon, Wed, Fri) (one hour each) for individual sessions. These sessions can be used for anything the user prefers but related to protecting themselves and growing their knowledge in this area.

  • Schedule 2 meetings per week (Tue, Thurs) (one hour each) for team sessions. Thes sessions can be used for anything the team prefers to include the same topics covered in individual sessions above, as well as security architecture reviews (not audits).

  • Twitter space once per week, or other social avenues for broad community sharing, vs the specific individual or specific team.

  • All of 2022 and continued into 2023 (life of the project)

  • 10 hours per week

  • Q3-Q4 2022:

  • Build initial website. Sections contained:

  • Knowledge Center

  • Individual Form and Team Form

  • Community Ideas and Community Articles. As well as advisor and expert article section (All Security related)

  • Q4 2023/Q1 2024:

  • Release a community survey on feedback and additional ideas

  • Continuously evaluate and determine if the schedule needs to be improved.

    [FEASIBILITY] Please provide a detailed budget breakdown.

Budget:

  • 100k - Proposer income. The goal here is to user catalyst funding to provide cost-free services to the community around Cyber Security, on a timeline of one year. This project will continue, but the funding is specific to the one-year timeline

  • 20k - expenses for website development and related costs, as well as unexpected expenses for new features

    [FEASIBILITY] Please provide details of the people who will work on the project.

People that will work on the project:

  • I will be the only member on this project

  • I will hire at a web developer to help build out the initial website

  • As the project develops in the future, there will be considerations of hiring other potential experts, or devs. That is future-state.

    [FEASIBILITY] If you are funded, will you return to Catalyst in a later round for further funding? Please explain why / why not.

I do not know for sure, if I will return to Catalyst. Currently my desire is to help our community and not charge any individual or team for that help. Therefore, Catalyst will at least be a consideration.

[AUDITABILITY] Please describe what you will measure to track your project’s progress, and how will you measure these?

Metrics and KPIs to track the project’s progress:

  • The total of meetings scheduled and completed each week

  • Per individual, per team, per community-wide

  • Website launch

  • Website usage tracking as well

    [AUDITABILITY] What does success for this project look like?

Success Criteria:

  • Defined criteria:

  • First quarter:

  • 75% of meetings scheduled and completed

  • New information topic posted by myself once per bi-weekly

  • Second quarter and beyond:

  • 100% of meetings scheduled and completed

  • New information topic posted by myself once per week

  • New information topic posted by community member or expert once per week

  • Arbitrary - undefinable criteria:

  • Reduced footprint of successful malicious acts, social engineering, scam attempts

    [AUDITABILITY] Please provide information on whether this proposal is a continuation of a previously funded project in Catalyst or an entirely new one.

This is an entirely new proposal and is not a continuation of any previously funded project.

Community Reviews (1)

Comments

Monthly Reports

  • I completed the build and release of my website, as promised (https://epochsec.io/). I have even also improved it in free time. In addition, I decided to work with 2 individuals that will be helping me build out a better future website (not required for the project, but something I want to do for people to enjoy and navigate my site for the content.
    • All content posted here https://epochsec.io/blog/ … Twitter spaces, documents (or other formats), future videos, survey are all posted here. The only thing not posted is proof of individual meetings because that does not need to be there. But that is being provided to my CT for Milestone tracking.
  • I have held 10 twitter spaces so far. I have received great verbal feedback on these spaces so far, from individuals learning, from individuals motivated by my efforts, and from others with knowledge in my space. I did take one week of vacation last week (my only I take for the year), but I will be making that time up throughout the project in formats such as documents, more spaces, and meetings.
  • I have also had 2 separate meetings with 2 teams in Cardano. They intend to set up future meetings with me. In addition, I have 2 other teams and 3 other individuals reach out to plan to set up meetings with me.
  • I set up my survey as well (https://www.surveymonkey.com/r/FM9YYD9). I don't have any responses, but my goal before the end of this month is to push it to folks who have joined my spaces or set up meetings with me.
  • This week (after the due date of this monthly report) I am writing 2 documents for the general routine safety tips for daily activity, and general OS hardening. I did already post a basic Linux guide for basic steps for initial set up of security. This is posted on my site.
  • Finally, I am also routinely providing evidence in a shared path to Adanamics, my CT contact, for the purposes of the Milestones proof and reporting. Adanamics met with me to sync up on this as well. I just wanted to say that Adanamics has been great to work with and the efforts are appreciated.
  • I feel that my project is doing well, picking up traction, and people are gaining knowledge, as well as sharing other useful knowledge. Generally, the reception seems to be very good.
Disbursed to Date
$120,000
Status
Launched
Completion Target
5. After 1 year
Comments 0

Login or Register to leave a comment!

  • The website, epochsec.io continues to run and host my content.

    • All content posted here https://epochsec.io/blog/ … Twitter spaces, documents (or other formats), future videos, survey are all posted here. The only thing not posted is proof of individual meetings because that does not need to be there. But that is being provided to my CT for Milestone tracking.
  • I continue to hold twitter spaces every week.

  • I have also had more individual sessions, as well as meetings/sessions with teams.

  • I have also joined several other twitter spaces and provided security related advice, versus only hosting on my own.

  • I have met with several YouTube Interviewers to share helpful information with users. Waiting on these to be publicly shared.

  • I have also made more progress on my documentation (which is listed on my blog section, as mentioned above).

  • Survey (https://www.surveymonkey.com/r/FM9YYD9). So far I have had one response, and more have said they will fill this out.

  • I feel that my project is doing well, picking up traction, and people are gaining knowledge, as well as sharing other useful knowledge. Generally, the reception seems to be very good.

Disbursed to Date
$120,000
Status
Still in progress
Completion Target
5. After 1 year
Comments 0

Login or Register to leave a comment!

close

Playlist

  • EP2: epoch_length

    Authored by: Darlington Kofa

    3m 24s
    Darlington Kofa
  • EP1: 'd' parameter

    Authored by: Darlington Kofa

    4m 3s
    Darlington Kofa
  • EP3: key_deposit

    Authored by: Darlington Kofa

    3m 48s
    Darlington Kofa
  • EP4: epoch_no

    Authored by: Darlington Kofa

    2m 16s
    Darlington Kofa
  • EP5: max_block_size

    Authored by: Darlington Kofa

    3m 14s
    Darlington Kofa
  • EP6: pool_deposit

    Authored by: Darlington Kofa

    3m 19s
    Darlington Kofa
  • EP7: max_tx_size

    Authored by: Darlington Kofa

    4m 59s
    Darlington Kofa
0:00
/
~0:00