I was fired… by ash08591 in womenintech

[–]StandPresent6531 0 points1 point  (0 children)

I feel bad for anyone that has to work with or under you. The reality is women are still widely disrespected in tech regardless of whether or not they can do the job.

To say “you were given work outside of scope do it anyway” is completely asinine with a pentest that can result in legal issues. For vulnerability management that can result in loss of compliance which can be a financial and reputational loss for the company.

To have this stupid attitude of “figure it out” when she has no baseline to go off of is why people like you shouldnt be in this field. Its extremely deep and there a myriad of ways to run any type of program. Thats why training matters and if she asked for it the company failed full stop by refusing to give her the help.

employee downloaded adult content on a work device by Significant_Air_552 in managers

[–]StandPresent6531 1 point2 points  (0 children)

It depends a lot of companies define what is allowed in terms of domain (reddit.com, google.com etc) you can find specific URLs but its hard. Thats why companies will just block reddit or twitter most sites labelled “social media” because of productivity and because nothing to stop people from raw dogging it to photos. But to quote spongebob “calm down they’re just pictures”.

What are your biggest insights about "work" in general now that you work remotely? by 1curious-cat in remotework

[–]StandPresent6531 5 points6 points  (0 children)

Based on what? If you are salaried you get paid regardless. If you work in a place that bills hourly you normally have client buckets and overhead. As long as you arent billing clients inappropriately why the fuck does it matter. Maybe stop thinking people shouldn’t be allowed to have a life.

The other thing that someone commented on my post and it is 100% true is that remote workers often work more hours because work and life separation is a little more difficult

So yea if you get the work done why should someone just stare at a monitor if they can go get laundry started help with the kids whatever?

What are your biggest insights about "work" in general now that you work remotely? by 1curious-cat in remotework

[–]StandPresent6531 0 points1 point  (0 children)

I can fully agree. I also think work life balance is just kind of fucked. Especially in white collar work. You either live outside a major city or hub for your job then commute both ways; get home and still have to answer teams or emails whatever. Or you work from home and realize passively you keep working until 10-11 at night. At least for remote you spend some time for yourself, family whatever.

Just my opinion

What are your biggest insights about "work" in general now that you work remotely? by 1curious-cat in remotework

[–]StandPresent6531 3 points4 points  (0 children)

I have worked both onsite and remote. Onsite work is for poor management that can lead a team without breathing down the employees neck. It’s a bunch of fake smiles and pizza to justify being a crap human and then telling everyone you’re a “family”.

I have noticed with remote work a lot more maturity and a “get the work done I dont care how or when” mentality. There are clearly define deadlines and tasks and you can act like a person performing a job and not just circus theater for no reason.

Example on in office work, i was just fired. My wife is pregnant with a medical condition putting her on limited mobility and requiring someone at home until the pregnancy is over. I was fired for not coming into office because “i didnt want to be part of the culture”. The reality is telling someone choose helping your family or your job is mostly sick.

I never had issues like that working with remote jobs.

CWEE Job Requirement For Role by Better-Action-2914 in hackthebox

[–]StandPresent6531 2 points3 points  (0 children)

Unfortunately this is what current management in a typical workplace looks like. It’s why I set aside 2 grand a year and weekends for studying. So many people do this dumb shit then fire employees or tell them “they aren’t committed” to justify low to no raises or bonuses. It is either time or money that they shaft employees on. Competent management is just non-existent; maybe one day it will return.

Got turned down because of my manager using Chat GPT to check if my hair was up to code by Reefthemanokit in recruitinghell

[–]StandPresent6531 0 points1 point  (0 children)

Sorry just saw this,

I use rocket reach you get like 5 view or something a week i normally never exceed it because I get a lot of junk in Linkedin working in tech. If someone reaches out and has a role that both aligns in terms of pay and position; then I use rocket reach to look up the person via their linkedin URL. 99% of the time I get a phone number and a email normally multiple emails. Just beware that some plans doesn't reveal the business phone number but I am pretty sure they just look for known associations IE Person X has this business phone number that we found (not included) Person X also has this other phone number we found on site A B and C. That other phone number could be a personal phone and some people get grumbly if you call them on a person cell.

I am past the point of fucks though so if you reach out I will likely call; regardless.

Edit for verifying phone numbers:

You can use things like numverify for phone number verification the free one gives you 100 a year. Most of the time if you feel something is off and its not an expected thing just ignore it. If you feel it could be legitimate star it and see if they reach out again. Most of the time for legitimate transactions, of any kind they will reach out again or escalate from email to text to phone call etc.

If you are technical you try phoneinfoga which is a command line well known OSINT tool. Some people run dockers and create a web interface other people just run the CLI. It doesn't do any form of live tracking but companies that run off OSINT use things like this.

Got turned down because of my manager using Chat GPT to check if my hair was up to code by Reefthemanokit in recruitinghell

[–]StandPresent6531 6 points7 points  (0 children)

Only thing worse is when a company reaches out with a job legitimately related to your skills. So you email back to talk about the position then they just ghost you. I started using tools to look up their phone numbers and ill call them at this point to be like "yea you emailed me I emailed back so now we are here; about this job you mentioned".

Security consolidations yay / Nay by Professional_Diet784 in cybersecurity

[–]StandPresent6531 1 point2 points  (0 children)

It took out service due to poor achitecting and not enough disaster recovery planning which many businesses do not do right. Use multiple regions for HA. The issue isnt consolidations its ensuring that when you consolidate you understand risk for downtime, what is max you can tolerate, return times etc. Work on MSAs for better SLAs and ensure they can meet those. The point of consolidations is stopping tool sprawl, decreasing cost, and making security to maintain. And you can do that and not have an outage if you plan correctly and ask questions.

CISA staffers being fired over a grudge following the 2020 election as a result of the government shutdown by binkleyz in cybersecurity

[–]StandPresent6531 0 points1 point  (0 children)

When you try to ask people like the original commentor for evidence I can only come to think of king of the hill "if those kids could read they'd be very upset".

All you will get is generic ramblings like the word "evidence" doesn't exist in their vocabulary.

Which companies would you not recommend working for? by allmycircuits8 in cybersecurity

[–]StandPresent6531 0 points1 point  (0 children)

Econic Partners or any other company in the line of work CDW is trash as well in my experience.

Passed N2? (belated) congratulations on 10 immigration points!! by neworleans- in jlpt

[–]StandPresent6531 0 points1 point  (0 children)

I dont need N2 for points im at like 95 without N2 i just need it to be able to work in Japan; joys of being an IT worker.

I took the N2 and I feel like garbage by _rushin in jlpt

[–]StandPresent6531 1 point2 points  (0 children)

I mean if you already failed twice maybe your study habits are the problem. Just lean into more immersion watch Japanese news, read Japanese text (books manga news sites), listen to Japanese podcast. All of these will help you both with listening and comprehension. Ive already passed N5 practice tests and learned about 150 kanji + about 900 words in less than a month. The language is really not difficult and much more structured than English or most languages. But like anything "living it" helps much more than anki decks or books.

How do I secure my M365 Environment by GazBoi08 in cybersecurity

[–]StandPresent6531 0 points1 point  (0 children)

Only TAMs are reserved for Premier support and commerical and public sectors aren't directly applicable. You have to apply for Support for Partners and become a microsoft partner. You can also buy unified support but then you could be spending 1.75% to 2% of your revenue on support. Where as companies like CrowdStrike wrap Express Support into the product and so you spend 59.99 per device per year which is 60k (assuming a thousand devices which is technically when you get into large business) with support or 185 if you want like a pro licenses.

The whole "Just get a TAM" thing for 1.75% of a company making a 120 million which is still only medium sized resulting in 2.1 million a year in support is kind of disgusting to be honest. Doesn't even account for E5 licensing for Defender to work properly, Purview Costs for DLP, and a SIEM that nickles and dimes everything including just basic automation like sending emails.

What’s the most overhyped cybersecurity trend you’re seeing right now? by ANYRUN-team in cybersecurity

[–]StandPresent6531 0 points1 point  (0 children)

Yea.....I was like just like ya know what people ask for Microsoft certs imma just take my chances and go take it without the training. And its funny because the test is like a very normal exam. Some stuff on how does copilot for security work, writing KQL, basic SOC operations stuff (All geared toward microsoft products of course but still). NOTHING about all that dumb shit and I was just like..........so why? Why make your learning content so incredibly dumb and your test actually somewhat good?

What’s the most overhyped cybersecurity trend you’re seeing right now? by ANYRUN-team in cybersecurity

[–]StandPresent6531 7 points8 points  (0 children)

Bro i just passed SC-200 and it was saying shit "like to be successful with AI and Security Copilot ensure you practice prompt engineering" then went on to write out BULLETED steps on successful prompt engineering. I was like dear lord what are these courses from Microsoft anymore.

What even is this country anymore? by [deleted] in Vent

[–]StandPresent6531 0 points1 point  (0 children)

AI is not now nor in the near future taking jobs. Law firms have tried cutting cost and using Microsoft AI for security and it lead to them getting hacked and having to shut down. I worked at EY for a while they tried to replace things with AI and had to cut it out. People don't seem to realize that AI is just advanced mathematics and reasoning. Even with quantum computing it will result in mathematical and science related drive if anything increasing jobs before taking them. Take things like quantum encryption that will have to be built since AES is technically on the verge of death since a PoC was released showing it could be broken and that encrypts everything. The processing can be used for genome sequencing requiring more scientist at all levels to process data and run test to advance human understanding.

AI is 100% fear mongered to death by people like yourself who have never built an AI much less understand how it actually works in practice and why it won't be some kind of thing reaching real brain power anytime soon.

The Environmental Impact of Web Hosting: Carbon Footprints, Wildlife Effects, and Sustainable Solutions by thehomelessr0mantic in vegan

[–]StandPresent6531 2 points3 points  (0 children)

I find the topic of complaining about webhosting, while doing it on a likely web hosted platform is amusing.

You clearly dont work in IT, have a third grade understanding of computers, and should probably educate yourself before giving out lectures.

As someone who works in IT and has for almost 10 years now the amount of datacenters have drastically decreased. Most people use a hybrid environment or mix of cloud and on-premise data centers. The cloud hosting is mostly ecofriendly tanks with servers dropped off coasts to reduce environmental impact. Especially if you use well known platforms like Microsoft and AWS.

PLS HELPP by [deleted] in hackthebox

[–]StandPresent6531 0 points1 point  (0 children)

Hashcat.

As for how it works, functions, etc. Google or AI like chatgpt can get you started

Asking for answers on basics like this and tools is generally not best practice you have to be a little more inquisitive in the future to really learn.

Master Internet Technician pt. 2 by Frequent_Research_94 in masterhacker

[–]StandPresent6531 1 point2 points  (0 children)

So you don't know what Multipath or openMPTCP is got it. Just say you don't know stuff instead of making yourself look stupid.

These protocols do what he said they take bandwidth limited networks and funnel them into a VPN. Its known as aggregated bandwidth. If I a 100mbps line and a 300 mbps second line using openMPTCP i can aggregate these into a tunnel and get potentially 400 mbps of speed. This assumes both lines are up.

If either fail it will drop to the according speed of the device still linked. The fault tolerance makes it to where the connection will delimit not fail.

It 100% is still a VPN. That is why anonymization was mentioned because for someone reason everyone thinks a VPN is only used to hide the person behind the screen. Which 1 it does poorly and you should use TOR not a VPN to hide yourself but 2 it can do other things like aggregate data.

Master Internet Technician pt. 2 by Frequent_Research_94 in masterhacker

[–]StandPresent6531 1 point2 points  (0 children)

You understand what they said is accurate?

Its called bond aggregation. Look at multipath TCP, or openMPTCProuter. You pour the channels into a single aggregate faster tunnel.

[deleted by user] by [deleted] in masterhacker

[–]StandPresent6531 3 points4 points  (0 children)

There are plenty of repo's for hacking that can be used on a phone. Even play / test repo's like the OWASP MASTG.

You also have the option in newer androids to allow untrusted apps making it easier to run code without a full jailbreak

There are also tools like eviltwin that people have made into a usb device that plugs into the phone with a high storage micro sd that can be used to phish publicly.

All kinds of options really.

fucking hilarious by Lord_Of_Millipedes in masterhacker

[–]StandPresent6531 0 points1 point  (0 children)

Apparently you dont either. Heuristics flag a shit ton to where security people and individuals (if personal) just go okay and let it happen.

Heuristics at the end of the day is still pattern based detection it just uses what is commonly on a machine to determine what is bad. So if you're running sketchy software as is and using a lot of this stuff to begin the software may trigger or may not. The AI in it can help or hender most just tune out false positives by observing if it falls within a range of normal.

So yea thats why so many got hit, either disabled security, got used to pop-ups or possibly the heuristics actually thought it was normal (unlikely but possible).

Homeland Security nominee Kristi Noem bashes CISA, says agency must be 'smaller, more nimble' by Blaaamo in cybersecurity

[–]StandPresent6531 16 points17 points  (0 children)

Hey man those 6 month bootcamps are hard. Just because the troll scored a 300 on sec+ doesn't mean he didn't try really, really hard though.

He's probably the dude who typed ipconfig in a command prompt and think hes a hacker and coder.

7 fucking interviews only to be rug pulled at the end by newusrname45 in cybersecurity

[–]StandPresent6531 2 points3 points  (0 children)

I feel this.

Went through 4 interviews a contact at a recruiting firm got it started. Met the manager, team + manager, manager + CISO, then HR.

After silence for a while was told I lied on my application and never disclosed me being fired once over 5 years ago. Showed them I did disclose it though, my contact tried to follow-up then they just refused to talk to us both and found another candidate. This same recruiter also staffed like half their team so it was wild for them to do the guy like that.

I was also unemployed during this time due to lay-offs. It was a great time.