home.social

#wireshark — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #wireshark, aggregated by home.social.

  1. 🔎 MisCloud is just retired! Walkthrough disclosure - right from the clouds 😶‍🌫️

    🔸 Google Cloud Services logs
    🔸 Intense PCAP analysis
    🔸 Really nice real-life scenario

    🔗 blog.cyberethical.me/htb-sherl

    Want to try investigations yourself?

    🔗 blog.cyberethical.me/go-htbapp

    #CyberEthical #HackTheBox #forensics #EthicalHacking #blueteaming #itsec #dataexfiltration #googlecloudservices #gcs #pcap #wireshark

  2. 💣 Full write-up for ToolPie this year's forensics challenge from Hack The Box Cyber Apocalypse CTF - Tales From Eldoria.

    🔸 PCAP (network capture) analysis
    🔸 Python bytecode, marshalling, decompiling

    🔗 blog.cyberethical.me/htb-ctf-2

    #CyberEthical #CyberApocalypse25 #HackTheBox #forensics #python #pcap #wireshark #EthicalHacking #blueteaming #itsec #dataexfiltration

  3. During the #SharkBytes session at #SharkFest conference I had an opportunity to present a lightning talk about my pet project called IDS Lab.
    It is a lab infrastructure deployable as docker containers, which simulates the small company network.

    The IDS Lab consists of web webserver with #Wordpress, #MySQL database, #Linux desktop with RDP, the #WireGuard VPN for "remote" workers and for connecting another virtual or physical machines into the lab network.
    This part of infrastructure can be used for attack simulations.

    There are additional components for playing with logs and detections, too: #Fluentbit, #Suricata and #OpenObserve as lightweight SIEM.

    In the #SIEM we already have preconfgured dashboards for alerts, netflows, web logs and logs from windows machines, if present.

    Using the provided setup script, the whole lab can be up and running in up to 5 minutes. For more info, please check my GitHub repository with the IDS Lab:

    github.com/SecurityDungeon/ids

    #sf24eu #wireshark @wireshark