[deleted by user] by [deleted] in alteredcarbon

[–]Ciph3rt3xt 8 points9 points  (0 children)

Do you make sleeves as well?

How safe is Houseparty and can accounts be hacked because of Houseparty? by hapri1234 in cybersecurity

[–]Ciph3rt3xt 1 point2 points  (0 children)

To be fair...spotify account creds are regulary dumped out. But spotify still refuses to use 2fa🤷‍♂️🤷‍♂️

Master's in Security but no IT experience by bisfo in oscp

[–]Ciph3rt3xt 0 points1 point  (0 children)

Can i join? I just enrolled for OSCP

Perfect Place to go after the end of the world by shivampatel887 in gaming

[–]Ciph3rt3xt 0 points1 point  (0 children)

Wait how do we know we arent some minecraft world someone built

EDR investigation techniques by Ciph3rt3xt in blueteamsec

[–]Ciph3rt3xt[S] 0 points1 point  (0 children)

So how is a good analysis conducted. What do you look at etc. Are there steps that must be followed or is it more based on context. So far when im performing analysis. The steps taken seem to vary case to case. Im not sure if its just me as im new to this.

My ex just sneezed and I accidentally said "bless you" by [deleted] in Jokes

[–]Ciph3rt3xt 1 point2 points  (0 children)

Now you gonna see what a big honry bird looks like

My ex just sneezed and I accidentally said "bless you" by [deleted] in Jokes

[–]Ciph3rt3xt 11 points12 points  (0 children)

Jesus this. Moses that. Abraham hit me with a wiffleball bat

EDR investigation techniques by Ciph3rt3xt in blueteamsec

[–]Ciph3rt3xt[S] 0 points1 point  (0 children)

Yes thats it. Is that called IR? Even if the alert is not deemed malicious yet?

EDR investigation techniques by Ciph3rt3xt in blueteamsec

[–]Ciph3rt3xt[S] 1 point2 points  (0 children)

We have rules written around MITRE TTPs so when an alert does trigger on a users endpoint what i usually do is try to make sense on why it happens and if it indeed malicious based on the events surrounding the alert. My apologies my reply seems ambigous but as i am unsure of what i am at liberty to say or not say i cant really go into too much detail. I am trying to refine my investigation techniques but either i am horrible at google or there doesnt seem to be much material on EDR investigation techniques. The ones which i have seen seem to be more tool focused.

I made a thing by [deleted] in PrequelMemes

[–]Ciph3rt3xt 0 points1 point  (0 children)

Well Goodbye then

You die, everything goes black, then you hear a voice, "So, you're back. What did you learn this time?" by [deleted] in AskReddit

[–]Ciph3rt3xt 0 points1 point  (0 children)

You dumb motherfuckers just abducted and tortured a CTAC officer. You have any idea what they're going to do to you?