
In This Issue:
🍕 DevMemphis — See Orb's network connectivity demo from Principal Engineer Wayne Bills, then stick around for pizza and shop talk
🔓 MEMSEC - DEFCON901: Beyond the SBOM, exploit to prevention in a live healthcare hack demo — Watch Saeed Fazal live-hack a healthcare app, then break down the SBOM and DevSecOps fixes that stop it
🛠️ Midsouth Makers Weekly Friday Open House — Drop by the makerspace this Friday, no registration required, and see what fellow members are tinkering with
☕ Code, Create + Conversate by BDPA Memphis — Bring your laptop, not your resume, for a judgment-free morning of coffee, code, and shop talk with fellow builders
🤖 Memphis AI Meetup: Free Weekly AI Conversations — Thirty minutes, no pitch, no pressure, just Scott Finney's weekly space to trade what's working with AI right now
Later in This Issue:
🎣 Phishing Isn't Just Email Anymore — QR codes, texts, even voice calls are fair game now.
📸 Our Community in Action

Innovate Accelerate Hackathon winners in August 2025

🗓️ Click here for the full event calendar
This link takes you to a calendar of events, listed in chronological order: Community Calendar🌐.
Developer Meetups, Workshops, & Tech Talks
🍕 DevMemphis
August 5 — 6:00 PM CDT (In-Person, UMRF Research Park, 460 S Highland St)
Wayne Bills, Principal Engineer at Orb.net, demos how Orb measures real connectivity, not just ping and speed tests. Pizza and casual conversation come first, but this session hands you a sharper way to diagnose network issues. Hosted by George Spake, Bryce Sharp, and Micheal Johnsey, free and open to every Memphis developer.
🔓 MEMSEC - DEFCON901: Beyond the SBOM, exploit to prevention in a live healthcare hack demo
August 7 — 5:00 PM CDT (In-Person, Room 225, FedEx Institute of Technology, UofM Campus)
Building on the previous software supply security talk by Saeed Fazal, this session hacks a secure healthcare app live through one vulnerable dependency, then flips to defense. A real look at how a single trusted component can take down a system and how to catch it before it ships.
Hosted by Hackermane at FIT on the UofM campus, free with pizza, built for anyone who owns what ships.
𝐍𝐞𝐭𝐰𝐨𝐫𝐤𝐢𝐧𝐠 & 𝐂𝐨𝐦𝐦𝐮𝐧𝐢𝐭𝐲
🛠️ Midsouth Makers Weekly Friday Open House
August 7 — 7:00 PM CDT (In-Person, 2804 Bartlett Road #3, Memphis, TN)
Every Friday, the doors are open, no invite needed. Stop by Midsouth Makers, see what fellow members are building this week, and swap hobbies with people who'd rather tinker than scroll. Hosted by Hackermane at 2804 Bartlett Road, it's free, casual, and built for curious nerds of every stripe.
☕ Code, Create + Conversate by BDPA Memphis
August 8 — 9:00 AM CDT (In-Person, Anti Gentrification Cxffee Club, 3386 Bowen Ave, Memphis, TN)
Bring your laptop, not your resume. BDPA Memphis's monthly meetup at Cxffee Black gathers developers, designers, and makers over coffee for a low-pressure morning of building and talking shop. Hosted by Naim Hakeem, it's judgment-free and open to every skill level, the kind of room where new connections outlast the coffee.

📣 Hosting something soon?
Meetups, launches, panels, workshops! If it’s helping grow the Memphis tech scene, we’ll make sure folks know.
𝐀𝐈 & 𝐄𝐦𝐞𝐫𝐠𝐢𝐧𝐠 𝐓𝐞𝐜𝐡
🤖 Memphis AI Meetup: Free Weekly AI Conversations
August 6 — 9:15 AM CDT (In-Person, Congregation Coffee, Germantown, TN)
Thirty minutes, no pitch deck. Scott Finney hosts a weekly, no-pressure conversation on what's actually working with AI in daily workflows at Congregation Coffee in Germantown. Whether you're brand new to automation or already deep in it, there's a seat for you and a chance to trade notes with people building alongside you.

We generally like quick, catchy phrases like "humans are the weakest link" because they seem to encapsulate a universal truism. But truisms often oversimplify complex topics. Humans are the juiciest of targets; they are the first line of defense; and we are the final fail-safe.
Take phishing, for example. The ultimate breakdown of what "phishing" is can be found in this youtube presentation, but in short: it's when someone provides a link claiming to be one thing (like a social media login) only to trick you into installing malware, revealing your credentials, or worse. Phishing comes in many forms, from emails to QR codes, SMS texts, and even voice calls. Attackers can cast a wide net to catch as many victims as possible, or they can "spear phish" a single target with methodical precision. Phishing (and quishing, smishing, vishing, etc.) may sound like technical jargon, but at its core, it is simply a bait-and-switch; a lie.
How do you defend against a lie? Most people rely on instinct, a "spidey sense" that whispers when something isn't quite right. When cybersecurity is involved, we need to learn how to investigate those internal alarms rather than ignore them. We need to ask: Do I recognize this sender? Can I validate they are who they claim to be? Does the URL lead where it says it does, or is there a subtle, deceptive typo in the domain? (Pro-tip: URL shorteners have outlived their usefulness and should never be trusted) Are you being asked to download an unexpected .exe, .pdf, or .zip file? When that "feeling" arises, don't just pause; keep investigating until you have an answer you trust.
Even if you have superpowered intuition, modern phishing is increasingly designed to bypass these alarms. I recently heard of a campaign where the hook wasn't fear, but a bizarre appeal to morality: a scammer posing as a fraudster seeking redemption, luring victims by promising a cut of his financial "repentance." By admitting to being a (former?) scammer, they intentionally muddied the waters of skepticism. And with the emergence of AI and LLMs, it is now easier than ever to custom-draft traps that are specifically engineered to undermine our idea of what a threat looks like, on a personal level.
Because of this, we cannot rely on gut feelings alone. We must approach digital interaction like a bartender checks an ID: verifying every contact and URL, not out of paranoia, but as protocol. Fortunately, some of the tools from our previous articles can act as our automated "ID checkers." Password managers protect you by refusing to autofill credentials when they detect a domain mismatch, and with passkeys, the magic of public-key cryptography makes unauthorized verification impossible. Tools like these can help you stay safe even when you do fall for a phishing trap. You may sometimes feel like the weakest link, but by pairing human intuition with technical safeguards, we cease to be the easy targets attackers rely on.
What security challenges are you facing in your digital life? Let us know, and we might cover it in an upcoming article.
Previous Articles
Guest Writer: Hackermane is a Memphis-based security expert and organizer of Midsouth Makers and Memphis Info Security, two meetups built on the same premise as this article: the threats are bigger than any one person, but the people in the room are how the city gets ahead of them anyway. Learn more or hang out: https://hackermane.com/
