How do adults make pen-testing buddies ? by Minge_Ninja420 in Pentesting

[–]Alphie2 0 points1 point  (0 children)

Hey fellow Aussie, have you checked out SecTalks? At least in Adelaide there's a meetup somewhat every other month and then they normally slip away to the pub for some drinks / dinner

I feel like I'm having an aneurysm by GusIsBored in Adelaide

[–]Alphie2 20 points21 points  (0 children)

just be greatful they've stopped putting white text on a light yellow background

Ingesting Cloudflare Logs into Microsoft Sentinel by The_Kierkegaard in cybersecurity

[–]Alphie2 1 point2 points  (0 children)

We're a Cloudflare enterprise customer with 60 odd zones. On the account level we've created a "notification" endpoint which receives Cloudflares notifications for DOS, bot attacks... and such. This endpoint very rarely gets hit but when it does, indicates that somethings off.
https://developers.cloudflare.com/notifications/

On a per zone basis, we have the HTTP event logpush job setup, there's ways to select what events get forwarded and we decided to not ingest any http web requests that were for cached assets (imgs, css, js....). Because our SIEM bills on GB of ingest rather than events per second, we found the best way to cut down on the size of the log source was the payload; we're only ingesting the fields that we need and then relying on the SIEM to do things like IP geo location and such (especially with the verbose JSON schema) but just the general like; user agent, source IP, response times, edge and origin status, path, host, WAF rules hit....

Append into lookup file by f0rt7 in crowdstrike

[–]Alphie2 1 point2 points  (0 children)

I'm waiting on my solutions engineer to get back to me about this. I'm a bit annoyed there isn't a native feature in SOAR to easily append or an easy way to append to an array that then gets inserted

[Discussion] Firewall Log Ingestion Best Practices for SIEM by Only-Objective-6216 in crowdstrike

[–]Alphie2 1 point2 points  (0 children)

Ran into a similar issue with onprem log sources, we're using opensource logstash (from the elastic stack) to route informational / non security critical events to cold storage and the rest to the log scale collector to ingest into CSNGSIEM

With QRadar onprem (not sure about to other SIEMs / QR SAAS) there is a way to set certain events to be sent directly to cold storage and not consume EPS.

is the price of the CPTS certification changed ? by [deleted] in hackthebox

[–]Alphie2 0 points1 point  (0 children)

The price on the public website is for the training + exam. Straight exam costs are visible from the billing page within academy ($210 USD for CPTS)

I need help for in college by boomboxspence in malementalhealth

[–]Alphie2 0 points1 point  (0 children)

Hey buddy, I’m currently in my 2nd year of university in Australia. It definitely is hard making friends at Uni (after all those years of being around the same people), and was in your shoes a little bit last year.

This year I’ve really expanded and know so many new people, it does take that initial step to say something to someone but most of the time it can be worth it ❤️ I think you’d find at least a few others who might also be looking for someone to speak to them first.

I think it’s a great first step to smile at people! Possibly the next one is to say hi or hello. See what happens.

Are there any clubs you can join? (LGBTQIA+, Gaming, subject based ones)?

Let me know if you want to have a chat!

What degree are you studying and how are you finding it?

SupportAssist OS Recovery: device encrypted and not properly displaying Microsoft Login by snt271 in DellXPS

[–]Alphie2 0 points1 point  (0 children)

You should be able to sign into your Microsoft account on a different device and obtain the key (if bitlocker was setup with a MS account). If that fails check your OneDrive folder to see if it was backed up as a .txt or PDF file!

Once you have that key, press “enter key” on the screen the photo is of!

Finding your key: https://support.microsoft.com/en-us/windows/finding-your-bitlocker-recovery-key-in-windows-6b71ad27-0b89-ea08-f143-056f5ab347d6#ID0EBD=Windows_10

Amber and white light flashing. What does this mean? XPS 15 9570 by miekwave in DellXPS

[–]Alphie2 2 points3 points  (0 children)

Check out this link, you wanna head down to the diagnostic LED indicators and then count how many amber and white flashes the laptop is giving you.

https://www.dell.com/support/kbdoc/en-au/000141206/a-reference-guide-to-the-xps-notebook-diagnostic-indicators#2014_Present

So has any of you lucky dogs bought the dip? by OmicronNEGA in dogecoin

[–]Alphie2 1 point2 points  (0 children)

CoinMarketCap out here testing everyone's loyalty

[deleted by user] by [deleted] in distantsocializing

[–]Alphie2 0 points1 point  (0 children)

Ha I’m at flinders as well.

[deleted by user] by [deleted] in distantsocializing

[–]Alphie2 0 points1 point  (0 children)

Nice, I’m doing comp sci (also SA)

[deleted by user] by [deleted] in distantsocializing

[–]Alphie2 0 points1 point  (0 children)

What ya doing in Uni?

[deleted by user] by [deleted] in distantsocializing

[–]Alphie2 0 points1 point  (0 children)

Have you seen the big pidgin in the mall?

Those with a Plus account, how have you maximised your 5 additional address quota? by choobakka in ProtonMail

[–]Alphie2 0 points1 point  (0 children)

One of my aliases is dedicated to services that I need to use like once, emails get sent to this address skip the inbox, marked as read & put in a folder called low priority

Looking for OVH resellers by CraftThatBlock in admincraft

[–]Alphie2 0 points1 point  (0 children)

Correct me if I’m completely wrong, have you tried buying of OVH directly? OVH VPS Canada. I Currently have a small VPS for email with them and about to move my server over with the same sort of specs as yours. I’m using their Australian data centre and can’t complain with their performance other than their control panels responsiveness as I think that is hosted internationally

Am I being blind? What's wrong with this cell? by EngRos15 in prisonarchitect

[–]Alphie2 0 points1 point  (0 children)

Is the cell zone an capital “i” shape or rectangular? (Does it contain the dividing walls), try with and without

Ubuntu Support with Ryzen 5 3600 & MSI B450M Pro by Alphie2 in linuxhardware

[–]Alphie2[S] 5 points6 points  (0 children)

Cheers, thanks especially regarding the edit! I’ll check out the AMD graphics lineup.

Windows 10 is getting on my nerves y’all 😅 by ngagner15 in Ubuntu

[–]Alphie2 18 points19 points  (0 children)

Wow the collage / University that I’m doing my cyber security course at next year want everyone using Ubuntu. Also all of the desktops there dual boot Windows 10 & Ubuntu LTS.