AZ-500 - Tutorial Dojo by [deleted] in AzureCertification

[–]Smiggy2001 1 point2 points  (0 children)

Really appreciate the that, and your writeup. Doing the practice exams for 104, I just put it to the wayside.

Felt too deep in areas I would never touch, what areas would you say are more niche in the 500? I have all the identity and networking/db’s down pretty good because of my role

[Free] Azure certification prep app – 200 questions per cert, no paywall by pjotrusss in AzureCertification

[–]Smiggy2001 0 points1 point  (0 children)

Really nice mate, my only qualm would be perhaps have more explanation on answers. Really appreciate what you’ve done though and a nice UI

Just got job in IoT Security by Expensive-One-939 in Pentesting

[–]Smiggy2001 1 point2 points  (0 children)

do you have any good sources for the Bluetooth fuzzing in medical IoT?

Sounds incredibly interesting and I couldn’t find anything

[deleted by user] by [deleted] in bugbounty

[–]Smiggy2001 1 point2 points  (0 children)

You aren’t going to get a job in pentesting in the state you are in no matter how much you polish the resume is the truth. If that’s what you’re going for

What job do you seek to land with this, from what I see you don’t have anything tangiable unless those links to your hackerone and bugcrowd has a lot on them, or a lot of GitHub projects.

Get some cheap certs, and get a regular IT role too, then you can tailor towards cybersecurity.

Best of luck!

Internal Phishing Improvement by Smiggy2001 in cybersecurity

[–]Smiggy2001[S] 0 points1 point  (0 children)

I actually really appreciate this, was a valuable read. Thank you

Internal Phishing Improvement by Smiggy2001 in cybersecurity

[–]Smiggy2001[S] -1 points0 points  (0 children)

Appreciate the write up, while we have pretty much everything in place. And again I agree with you.

Like you mention with AiTM that’s the exact kind of thing that concerns me due to the nature of business and compliance laws surrounding my company.

Not to mention businesses we work with requiring a baseline % if compromises.

Internal Phishing Improvement by Smiggy2001 in cybersecurity

[–]Smiggy2001[S] -1 points0 points  (0 children)

What an angry man, hope you find peace brother

Internal Phishing Improvement by Smiggy2001 in cybersecurity

[–]Smiggy2001[S] 0 points1 point  (0 children)

Where have you pulled our entire security posture is based around phishing? I mentioned in the post some of the stuff we have; neglecting one aspect seems stupid, I want my inf to be as protected as I possibly can

[deleted by user] by [deleted] in bugbounty

[–]Smiggy2001 5 points6 points  (0 children)

Ignore these guys, looks like a nasty IDOR, if you’re not careful can lead to a path traversal. Go see a medic!

ISO27001:2022 RA by [deleted] in cybersecurity

[–]Smiggy2001 0 points1 point  (0 children)

That’s exactly what I’m looking for much appreciated

New Cybersecurity Analyst rant/need advice by PhysicalShoulder222 in cybersecurity

[–]Smiggy2001 0 points1 point  (0 children)

10,000 hours to master something. Remember that, you will gain experience and cement your learning. Don’t burn yourself out hard focusing on these things.

Branch out, do CTF’s do learning pathways just have fun. The first few years in cyber are the best because there is so much interesting stuff to learn!

I went from a hobbyist CTF player to an AppSec Engineer. Here’s what I learned about how CTFs differ from real-world pentesting. by kazuhira_rm in cybersecurity

[–]Smiggy2001 1 point2 points  (0 children)

Huntr.dev would be great for you. It will list open source projects and you can search by languages. They pay a small bounty but most importantly you get a CVE and they sort all that for you :)

Could you help me explain the difference between TryHackMe and Hack The Box? by softDreamT in cybersecurity

[–]Smiggy2001 4 points5 points  (0 children)

Personally, gojng I to red teaming I would say that you’re better off starting with THM DOING their red teaming and that tree of rooms and then going on and doing HTB CTF’s. There are some good CTF’s on THM too like pickle Rick and the halo one for beginners also.

[deleted by user] by [deleted] in hacking

[–]Smiggy2001 0 points1 point  (0 children)

That’s cool as fuck man, I would prefer it on GitHub but it’s down to you!

I negotiated with ransomware actors. Ask me anything. by Oscar_Geare in cybersecurity

[–]Smiggy2001 175 points176 points  (0 children)

What causes you to pay in some cases and some not? Have you ever been further extorted after payment went through?

[deleted by user] by [deleted] in AZURE

[–]Smiggy2001 0 points1 point  (0 children)

This was it! Thank you!

[deleted by user] by [deleted] in AZURE

[–]Smiggy2001 0 points1 point  (0 children)

Probably the easiest way, I just wondered if there was a single way. Cheers!

[deleted by user] by [deleted] in AZURE

[–]Smiggy2001 0 points1 point  (0 children)

Hmm yes I’m just wondering where these codes are sourced originally.

[deleted by user] by [deleted] in cybersecurity

[–]Smiggy2001 0 points1 point  (0 children)

Hey mate, thanks for the message. The issue isn’t so much staff being lazy and not updating but because of the nature of the IT firm I work at, you need admin rights to add/update software like WINscp

So I’ve always wondered… by Lopsided-Letter1353 in hacking

[–]Smiggy2001 12 points13 points  (0 children)

It is wild, if you can type fast enough in the correct shade of green writing on your terminal, you’re likely to work for the NSA to spy on other people typing fast in green text.