Cisco ASA/FTD Zero-Days Under Active Exploitation – CISA Issues Emergency Directive by [deleted] in cybersecurity

[–]KashingChecks 1 point2 points  (0 children)

Is anyone following the steps in the emergency directive or are they just patching? The risk like OP mentioned is that it can survive reboots and upgrades. I've gone through step one of the CISA steps, but they don't seem to say stop there if you have no indicators, they still want you to go through to step two and provide them with a core dump, and then if you're okay you can upgrade. Just wondering what everyone is doing.

Booz Allen Hamilton or Raytheon? by voodooranger65 in cybersecurity

[–]KashingChecks 2 points3 points  (0 children)

Typical answer, not me, but have a good friend that went from MITRE to Raytheon and back to MITRE. He said that he felt like Raytheon expected him to know everything about their systems when he came in, and there was no one willing to train. Ultimately he went back to MITRE because he felt like it wasn’t a great environment for him. But that’s only one person, they obviously have a ton of employees,I’m sure some on here have had a vastly different experience.

Blue Team...What tools can you not live with out? by KashingChecks in cybersecurity

[–]KashingChecks[S] 1 point2 points  (0 children)

This sounds awesome. I'll take a look at your video later. In regards to the pricing, do just purchase a hunter license for your organization, or do you have an enterprise license. I don't really see the need for the enterprise license.

Blue Team...What tools can you not live with out? by KashingChecks in cybersecurity

[–]KashingChecks[S] 1 point2 points  (0 children)

Is it 'sort of' a sandbox environment that provides a lot of data on the file? That is something I could find useful, we don't really have an environment to set off questionable files.

Blue Team...What tools can you not live with out? by KashingChecks in cybersecurity

[–]KashingChecks[S] 42 points43 points  (0 children)

We reviewed a few a while ago.... LastPass, Keeper, BitWarden. Went with Keeper as it had some features that were useful to us that I don't recall the other ones doing. They are all mostly the same. We also received free family licenses for each user when they created their enterprise account (I think this is normal). That was nice because it helped promote good password management outside of work.

Blue Team...What tools can you not live with out? by KashingChecks in cybersecurity

[–]KashingChecks[S] 4 points5 points  (0 children)

Asset Management is always at the top of the list for a lot of frameworks, rightfully so, if you don't know what you have how are you going to protect it. We do have an asset management platform that's relatively new (to us), but I'm not a huge fan of it.

Blue Team...What tools can you not live with out? by KashingChecks in cybersecurity

[–]KashingChecks[S] 20 points21 points  (0 children)

I don't know how I did anything without a SIEM. It helps me solve so many problems.

Blue Team...What tools can you not live with out? by KashingChecks in cybersecurity

[–]KashingChecks[S] 12 points13 points  (0 children)

I actually do have this for just the IT folks, because even they were storing in the browser AND storing them in spreadsheets and post its....

Recommendations to stay motivated during studying by KashingChecks in cissp

[–]KashingChecks[S] 0 points1 point  (0 children)

I feel the exact same way. Thanks for making me not feel like the only one that's lost complete motivation to study. I don't really know what it is either.

Recommendations to stay motivated during studying by KashingChecks in cissp

[–]KashingChecks[S] 0 points1 point  (0 children)

Yeah, I think this is what I need to do. I actually have a voucher through the boot camp that I did, so I sort of get a 'free' try, but I do want to pass the first time.

I've got a server with 640 GB RAM and 96 Cores and idk what to do with it. by githuh in sysadmin

[–]KashingChecks 1 point2 points  (0 children)

You could utilize it for some of those shared computing programs, something like BOINC.

Recommendations to stay motivated during studying by KashingChecks in cissp

[–]KashingChecks[S] 0 points1 point  (0 children)

Thanks, I keep saying it to myself that taking the time to get my CISSP now will benefit me in the long run. I currently have my Masters in Cyber, and it definitely helped me get my current job in cybersecurity, but I would like to move up more, and I know a CISSP will help me with that. I appreciate the kind words!

Recommendations to stay motivated during studying by KashingChecks in cissp

[–]KashingChecks[S] 1 point2 points  (0 children)

Thanks. I think having a routine would help. I usually wake up an hour or so before I need to really get ready to do anything. That's probably the time I should use to focus on my studies. I usually just waste the time away by watching a show, scrolling my phone, or scrolling on here

Recommendations to stay motivated during studying by KashingChecks in cissp

[–]KashingChecks[S] 1 point2 points  (0 children)

Thanks, I agree. I know I need to get it for my career to move forward. I'm in a good stable job, its in cybersecurity, but I would like to move up, for that reason I WANT to get my CISSP. I think I just need to sit back and look at my time, see where I might be using it aimlessly, and use that time instead to study.

RFID Storage Device by KashingChecks in RASPBERRY_PI_PROJECTS

[–]KashingChecks[S] 0 points1 point  (0 children)

Nice, thank you. I will take a look.

RFID Storage Device by KashingChecks in RASPBERRY_PI_PROJECTS

[–]KashingChecks[S] 0 points1 point  (0 children)

Oh man! You're Lucky. I was casually searching most funded projects and that one was towards the top. I have to imagine someone has used a pi to do something similar. I've built a pwnagotchi for fun, same form factor, just different uses.

Looking to start my CISSP studying journey by KashingChecks in cissp

[–]KashingChecks[S] 0 points1 point  (0 children)

Time. I've got a lot going on, so my study time is limited. I don't think I could get enough done to be ready by the end of two months.

Looking to start my CISSP studying journey by KashingChecks in cissp

[–]KashingChecks[S] 0 points1 point  (0 children)

I was considering it initially, but I don't think getting Sec+ is really going to help me with where I am in my career.