home.social

#adventofcyber2022 — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #adventofcyber2022, aggregated by home.social.

fetched live
  1. Super excited to say I completed the @RealTryHackMe #AdventofCyber2022
    I am extremely grateful for all of the hard work that was put into making this challenge fun and enjoyable for all.
    I can't wait for next year and if you want to learn some #RedTeaming You should definitely get involved in tryhackme.org and other sites like this.
    My favorite out of all of them was the #SigmaRules and #MalwareAnalysis but all of it was fun and I definitely learned a lot.

  2. Super excited to say I completed the @RealTryHackMe #AdventofCyber2022
    I am extremely grateful for all of the hard work that was put into making this challenge fun and enjoyable for all.
    I can't wait for next year and if you want to learn some #RedTeaming You should definitely get involved in tryhackme.org and other sites like this.
    My favorite out of all of them was the #SigmaRules and #MalwareAnalysis but all of it was fun and I definitely learned a lot.

  3. Super excited to say I completed the @RealTryHackMe #AdventofCyber2022
    I am extremely grateful for all of the hard work that was put into making this challenge fun and enjoyable for all.
    I can't wait for next year and if you want to learn some #RedTeaming You should definitely get involved in tryhackme.org and other sites like this.
    My favorite out of all of them was the #SigmaRules and #MalwareAnalysis but all of it was fun and I definitely learned a lot.

  4. Super excited to say I completed the @RealTryHackMe #AdventofCyber2022
    I am extremely grateful for all of the hard work that was put into making this challenge fun and enjoyable for all.
    I can't wait for next year and if you want to learn some #RedTeaming You should definitely get involved in tryhackme.org and other sites like this.
    My favorite out of all of them was the #SigmaRules and #MalwareAnalysis but all of it was fun and I definitely learned a lot.

  5. That's it, no more rooms of #AdventOfCyber2022 from #tryhackme
    It's been a fun month. I explored some recommended rooms and I will continue to learn more in these rooms.
    Now to just wait and see if I maybe won a prize.

  6. I was only able to get another day of the #TryHackMe #AdventOfCyber2022 challenge completed today. Day 18 focused on threat detection through log analysis using the generic signature tool for SIEM systems, SIGMA.

    You can find SIGMA's github here: github.com/SigmaHQ/sigma

    The challenge's activities very interesting. I look forward to learning more about #SIGMA in the future.

    #Infosec

  7. I was only able to get another day of the #TryHackMe #AdventOfCyber2022 challenge completed today. Day 18 focused on threat detection through log analysis using the generic signature tool for SIEM systems, SIGMA.

    You can find SIGMA's github here: github.com/SigmaHQ/sigma

    The challenge's activities very interesting. I look forward to learning more about #SIGMA in the future.

    #Infosec

  8. I was only able to get another day of the #TryHackMe #AdventOfCyber2022 challenge completed today. Day 18 focused on threat detection through log analysis using the generic signature tool for SIEM systems, SIGMA.

    You can find SIGMA's github here: github.com/SigmaHQ/sigma

    The challenge's activities very interesting. I look forward to learning more about #SIGMA in the future.

    #Infosec

  9. I was only able to get another day of the #TryHackMe #AdventOfCyber2022 challenge completed today. Day 18 focused on threat detection through log analysis using the generic signature tool for SIEM systems, SIGMA.

    You can find SIGMA's github here: github.com/SigmaHQ/sigma

    The challenge's activities very interesting. I look forward to learning more about #SIGMA in the future.

    #Infosec

  10. I’ve finally caught up with the #tryhackme #AdventOfCyber2022 ! Ah. It feels so good. Tomorrow’s the last day.

  11. Defense in depth is a strategy everyone should follow nowadays to secure an environment. Securing only the perimeter will lead to some bad surprises. That's greatly explained on day 23 of #AdventOfCyber2022
    It took me 3 or 4 tries to get through this mini game. I guess if copy/paste worked correctly, I could have done it faster. :ablobcatnod:​

    #tryhackme

  12. A quick day 22 of #AdventOfCyber2022 with learning about attack surface reduction. Good intro for those who are new in this field.

    #tryhackme

  13. Today's TryHackMe #AdventOfCyber2022 challenge was frustratingly rough. I could never get the redirection command for the camera to work even after copying the walk-through commands exactly (changed the IPs used).

    I ended up having to reboot the target machine. The target had a new IP. Found the new device ID and used that info in the redirection command. It worked that time.

  14. Hacking a webcam feed was possible because of insecure #MQTT code. While I couldn't get to reroute the RTSP feed on day 21 of #AdventOfCyber2022 I still learned something from it.

    #tryhackme

  15. It's been a good day chugging away at the THM Advent of Cyber challenges and the LetsDefend learning modules.

    Just like my cyber dolphin here, I think I too will turn in for the night.

    #FlipperZero
    #AdventOfCyber2022
    #LetsDefend
    #BlueTeam

  16. It's been a good day chugging away at the THM Advent of Cyber challenges and the LetsDefend learning modules.

    Just like my cyber dolphin here, I think I too will turn in for the night.

    #FlipperZero
    #AdventOfCyber2022
    #LetsDefend
    #BlueTeam

  17. It's been a good day chugging away at the THM Advent of Cyber challenges and the LetsDefend learning modules.

    Just like my cyber dolphin here, I think I too will turn in for the night.

    #FlipperZero
    #AdventOfCyber2022
    #LetsDefend
    #BlueTeam

  18. #MerryChristmas to me
    Even though it’s not until Sunday

    2 Books - Practical Malware Analysis & This is how they tell me the world ends (the cyber weapons arms race)

    In support of the holiday hack challenges:

    #tryhackme hoodie
    #tryhackme the bandit yeti #AdventOfCyber2022 tshirt

    #sansinstitute holiday hack challenge shirt #kringlecon2022

    #treatyourself #youdeserveit

  19. #MerryChristmas to me
    Even though it’s not until Sunday

    2 Books - Practical Malware Analysis & This is how they tell me the world ends (the cyber weapons arms race)

    In support of the holiday hack challenges:

    #tryhackme hoodie
    #tryhackme the bandit yeti #AdventOfCyber2022 tshirt

    #sansinstitute holiday hack challenge shirt #kringlecon2022

    #treatyourself #youdeserveit

  20. #MerryChristmas to me
    Even though it’s not until Sunday

    2 Books - Practical Malware Analysis & This is how they tell me the world ends (the cyber weapons arms race)

    In support of the holiday hack challenges:

    #tryhackme hoodie
    #tryhackme the bandit yeti #AdventOfCyber2022 tshirt

    #sansinstitute holiday hack challenge shirt #kringlecon2022

    #treatyourself #youdeserveit

  21. #MerryChristmas to me
    Even though it’s not until Sunday

    2 Books - Practical Malware Analysis & This is how they tell me the world ends (the cyber weapons arms race)

    In support of the holiday hack challenges:

    #tryhackme hoodie
    #tryhackme the bandit yeti #AdventOfCyber2022 tshirt

    #sansinstitute holiday hack challenge shirt #kringlecon2022

    #treatyourself #youdeserveit

  22. Just did some baby steps on reverse engineering firmware on day 20 of #AdventOfCyber2022 with #Binwalk and #FirmwareModKit
    Tomorrow will be the day of hacking a camera of some sort.

    #tryhackme

  23. Interesting dip into the field of #hardwarehacking with logic analysers. The #USART #SPI and #I2C communication protocols were given an introduction and a small hands-on on day 19 of #AdventOfCyber2022

    #tryhackme

  24. Really interesting blue day for day 18 of #AdventOfCyber2022 with #Sigma rules to detect threats. That's another topic where I have to take a deep dive in. Also gotta figure out the differences between #Sigma and #YARA and decide which one is better to work with.

    #tryhackme

  25. My brain is smoking after finally being forced to dive into #Regex but it's a real powerful tool. Day 17 of #AdventOfCyber2022 was about more secure coding, input validation on client as well as server side.

    #tryhackme

  26. Depeche mode is in the playlist, with me singing along like a fool. Timing is perfect to catch up on #TryHackMe and #AdventOfCyber2022

  27. Depeche mode is in the playlist, with me singing along like a fool. Timing is perfect to catch up on #TryHackMe and #AdventOfCyber2022

  28. Depeche mode is in the playlist, with me singing along like a fool. Timing is perfect to catch up on #TryHackMe and #AdventOfCyber2022

  29. Depeche mode is in the playlist, with me singing along like a fool. Timing is perfect to catch up on #TryHackMe and #AdventOfCyber2022

  30. A late day 16 for me of #AdventOfCyber2022 with another purple day. The focus was on #SQLinjection and how to defend against it, for example with prepared statements.

    #tryhackme

  31. We're a little over halfway through the #AdventOfCyber2022 by THM, and I have to say that outside of the smart contract challenge (day 8) I've enjoyed all of them.

    I've also only needed to follow the video for one challenge, but I do enjoy watching them after I finish to see what other insight is offered by the video creator.

    All in all, good job THM.

  32. Sprinkle in some red and blue and you've got purple for day 15 of #AdventOfCyber2022 with attacking and defending a #webapplication
    Kinda wished that on red team tasks there would be info on how to defend against the threats.

    #tryhackme

  33. Sprinkle in some red and blue and you've got purple for day 15 of #AdventOfCyber2022 with attacking and defending a #webapplication
    Kinda wished that on red team tasks there would be info on how to defend against the threats.

    #tryhackme

  34. Day 14 of the #TryHackMe #AdventOfCyber2022 covered a basic web application security assessment.

    Specifically it tasks you with looking for a couple of insecure direct object references (#IDOR).

    It was pretty simple and not that challenging, though it did get the point across.

    Day 15 doesn't appear to be released yet.

    #infosec

  35. Day 14 of the #TryHackMe #AdventOfCyber2022 covered a basic web application security assessment.

    Specifically it tasks you with looking for a couple of insecure direct object references (#IDOR).

    It was pretty simple and not that challenging, though it did get the point across.

    Day 15 doesn't appear to be released yet.

    #infosec

  36. Day 14 of the #TryHackMe #AdventOfCyber2022 covered a basic web application security assessment.

    Specifically it tasks you with looking for a couple of insecure direct object references (#IDOR).

    It was pretty simple and not that challenging, though it did get the point across.

    Day 15 doesn't appear to be released yet.

    #infosec

  37. Last night I caught up with the #TryHackMe #AdventOfCyber2022 challenge and completed days 13 and 14.

    Day 13 covered analyzing a #PacketCapture (#PCAP) file using #WireShark. I have some familiarity with the tool, so I was able to burn through that challenge. I did enjoy the twist of exporting a captured file data stream and then running its hash through #VirusTotal.

    #infosec

  38. Last night I caught up with the #TryHackMe #AdventOfCyber2022 challenge and completed days 13 and 14.

    Day 13 covered analyzing a #PacketCapture (#PCAP) file using #WireShark. I have some familiarity with the tool, so I was able to burn through that challenge. I did enjoy the twist of exporting a captured file data stream and then running its hash through #VirusTotal.

    #infosec

  39. Last night I caught up with the #TryHackMe #AdventOfCyber2022 challenge and completed days 13 and 14.

    Day 13 covered analyzing a #PacketCapture (#PCAP) file using #WireShark. I have some familiarity with the tool, so I was able to burn through that challenge. I did enjoy the twist of exporting a captured file data stream and then running its hash through #VirusTotal.

    #infosec

  40. Today's THM Advent of Cyber challenge was a quick one but one that shouldn't be overlooked.

    The challenge itself was pretty easy, but it's a good reminder that there are still a lot of websites and web applications that are poorly built and open to vulnerabilities.

    I was listening to Darknet Diaries episode 2 on my commute yesterday and that talked about the VTech breach in 2015. The hacker was able to easily gain access because of garbage security.

    #AdventOfCyber2022
    #TryHackMe
    #OWASPTOP10
    #DarknetDiaries

  41. Today's THM Advent of Cyber challenge was a quick one but one that shouldn't be overlooked.

    The challenge itself was pretty easy, but it's a good reminder that there are still a lot of websites and web applications that are poorly built and open to vulnerabilities.

    I was listening to Darknet Diaries episode 2 on my commute yesterday and that talked about the VTech breach in 2015. The hacker was able to easily gain access because of garbage security.

    #AdventOfCyber2022
    #TryHackMe
    #OWASPTOP10
    #DarknetDiaries

  42. Today's THM Advent of Cyber challenge was a quick one but one that shouldn't be overlooked.

    The challenge itself was pretty easy, but it's a good reminder that there are still a lot of websites and web applications that are poorly built and open to vulnerabilities.

    I was listening to Darknet Diaries episode 2 on my commute yesterday and that talked about the VTech breach in 2015. The hacker was able to easily gain access because of garbage security.

    #AdventOfCyber2022
    #TryHackMe
    #OWASPTOP10
    #DarknetDiaries

  43. Day 14 of the
    @RealTryHackMe Advent of Cyber is live! I’m doing the walkthrough and it covers IDOR. #adventofcyber2022

    youtu.be/UlvYi7ae0G8

  44. Day 14 of the
    @RealTryHackMe Advent of Cyber is live! I’m doing the walkthrough and it covers IDOR. #adventofcyber2022

    youtu.be/UlvYi7ae0G8

  45. I completed Day 12 #TryHackMe #AdventOfCyber2022 challenge one day late.

    Day 12 focuses on #MalwareAnalysis using the tools #DetectItEasy, #CAPA, and #Procmon on a #FlareVM.

    This was another interesting challenge.

    #Infosec #Malware

  46. I am postponing today's #TryHackMe #AdventOfCyber2022 #infosec challenge until tomorrow.

    It focuses on malware analysis and I've decided that I just want to drink some tea and read some #ttrpg rules, #Vaesen and #SwordsOfTheSerpentine, and my book, #AchingGod by #MikeShel, instead.

    It's okay to take a break, right?

    Plus, I am tired and I don't think I will get as much out of it in this state.

    I'll catch up tomorrow.

  47. TryHackMe #AdventOfCyber2022 had a great lesson today on #MalwareAnalysis

    Another way to find #IOCs within files can be done using Process Hacker alone. Using a #Bumblebee sample, a LNK file contains `start rundll32.exe 32de.dll, YTBSBbNTWU`. Filter for `Process Name is rundll32.exe`, view the process properties, go to the memory tab and filter using this #Regex pattern:
    `^(?:[0-9]{1,3}\.){3}[0-9]{1,3}$`

    More here + visuals:
    axelarator.github.io/posts/bum

  48. I finished day 10 this morning and just completed day 11 of the #TryHackMe #AdventOfCyber2022 challenge.

    Day 11 focuses on analyzing a memory dump of a compromised machine using the #Python #infosec tool, #Volatility3.

    This was a very straightforward challenge, which I enjoyed. I used my extra time to play around with other options that weren't explored in the tasks of the challenge. Very worthwhile and another tool for my tool chain.

  49. I finished day 10 of the #TryHackMe #AdventOfCyber2022 challenge a day late as I spent the day hanging out with my family yesterday and didn't want to hop onto a computer.

    Day 10 focused on memory analysis and manipulation in order to beat an unwinnable web game.

    If was interesting and I got some familiarity with the #Cetus web assembly memory analysis tool.

    #Infosec #KobayashiMaru