14 Followers
71 Following
21 Posts
🛡️
Hello there,
Any recommendations for #webhacking books?

I finally stopped doubting myself.

I retrained late in life in IT and "cybersecurity" after almost dying many times from an illness I unfortunately was born with.
Not cured and never will, but I am eager to live and that's what matters.

Even though I reached my main goal in working in SecOps, I always feel like a fraud, though I worked hard and graduated first every year.

I am far from being proud of this, but it's time to own it, as my nearest and dearest would say.

It all started because I noticed double standards in my team regarding the processes and heavy micro-management.

No hard feelings here, but it was eye-opening.

It does not mean I suddenly became full of myself, just that I decided to no longer let anyone tell me I am enough or not.

From now on I will own it and let the work speak for itself.

I no longer have anything to prove to them just enjoy myself and leave whenever I am ready.

Just a little reminder for rainy days.

I can't believe I actually had to attend a meeting about how to run a meeting and that they actually were dead serious about it.
I mean they made slides... Slides people.
What on earth is this wacko corporate bullshit?
How am I supposed to recover from this and still believe in humanity?

At least five Chrome extensions were compromised in a coordinated attack where a threat actor injected code that steals sensitive information from users.

https://www.bleepingcomputer.com/news/security/cybersecurity-firms-chrome-extension-hijacked-to-steal-user-data/

Cybersecurity firm's Chrome extension hijacked to steal user data

At least five Chrome extensions were compromised in a coordinated attack where a threat actor injected code that steals sensitive information from users.

BleepingComputer

Reaper is the 4th HackTheBox's introductory Active Directory investigation Sherlock series. This one focuses on an NTLM relay attack. I'll use a PCAP and a Security log to show the attack.

https://0xdf.gitlab.io/2024/08/22/htb-sherlock-reaper.html

HTB Sherlock: Reaper

Reaper is the investigation of an NTLM relay attack. The attacker works from within the network to poison an LLMNR response when a victim has a typo in the host in a share path. This results in the victim authenticating to the attacker, who relays the authentication to another workstation to get access there. I’ll show how this all happened using the given PCAP and Windows Security Log.

0xdf hacks stuff

Hi there!
I noticed I forgot to make a proper #introduction since I migrated from #fosstodon to infosec.exchange

I am pill, I am passionate about IT, infosec and music. Like many others I started to learn ethical hacking a couple of years ago on #HackTheBox and #TryHackMe platforms.
I am quite interested in understanding how OSes and #malware work, as I would like to learn more about reverse engineering someday.

On a less professional level, I enjoy going to the gym, riding my bike and reading 19th century French and English-written literature

I am here to chat, learn and connect with like-minded people.

I speak French and English, and I am currently learning Italian.

Have a nice day!

Does anyone have recommendation to learn about #windowsinternals ?