Weekly Cybersecurity Wrap-up 10/2/23

Webinars

I tried this and found Chat GPT to be helpful writing about myself and using “resume speak”.

Articles

Podcasts

  • Cyberwire Daily – Ep 1918 | 10.2.23 – Adventures of ransomware, and other developments in cybercrime. Cyberespionage and hybrid warfare. A government shutdown averted. Cybersecurity Awareness Month is underway.
  • Cyberwire Daily – Ep 1919 | 10.3.23 – Where ICS touches the Internet. BunnyLoader traded in C2C markets. Phantom Hacker scams. API risks. Cybersecurity attitudes and behavior. DHS IG reports on two cyber issues. Updates on the hybrid war.
  • Cyberwire Daily Ep 1921 | 10.5.23 – Security risks in the hardware and software supply chains. Patches and proofs-of-concept. A look at recent incidents hitting major corporations. Online surveillance and social credit in Russia.
  • Smashing Security 342: Royal family attacked, keyless car theft, and a deepfake Tom Hanks

Projects

Weekly Cybersecurity Wrap-up 9/25/23

Webinars

I’m studying for the Security+ right now. This was a good overview, but I think anyone with any technical background can skip directly to the Security+.

I’ll watch anything with Rachel Tobac in it. She is a master of social engineering!

This certificate looks like it would be worth while to do after the Security+ as it covers CISSP a lot and I’ll need lots of time to review the topics for that more difficult certificate.

Articles

Podcasts

  • CyberWire Daily – Ep 1914 | 9.26.23 – Crooks phish for guests; spies phish for drone operators. ZenRAT is used in an info-stealing campaign. More MOVEit-related incidents (some involving Cl0p). DeFi platforms hit. The UK hunts forward.
  • CyberWire Daily – Ep 1916 | 9.28.23 -Buckworm APT’s specialized tools. Cyberattack against Johnson Controls. Oversight panel reports on Section 702. Cyber in election security, and in the US industrial base. Hacktivism versus Russia.
  • CyberWire Daily – Ep 1917 | 9.29.23 – Malicious ads in a chatbot. A vulnerability gets some clarification. Cl0p switches from Tor to torrents. Influence operations as an adjunct to WMD. And NSA’s new AI Security Center.
  • Smashing Security 341: Another T-Mobile breach, ThemeBleed, and farewell Naked Security

Projects

TryHackMe – SOC Level 1(75 % Complete): Windows Forensics 2 – In Progress

Weekly Cybersecurity Wrap-up 9/17/23

Webinars

This week I watched a lot of youtubes. Some of the were okay.

The below brighttalk talk was one of the best I’ve been too and its monthly so you should really watch this and make sure to catch them monthly.

Verizon Threat Research Advisory Center MIB – Monthly Update for September. Great webinar and worth 1 CPE.

This one below from Black Hills Information Security was the best thing I watched this week. Great for beginners like me:

Articles

Podcasts

  • ISC Daily Stormcast – SANS Podcast for 8/21/23 – DNS TTls; Snatch Ransomware; npm packages; nagios xi vuln;
  • Cyberwire Daily – Ep 1910 | 9.20.23 – Hacking the ICC. ShroudedSnooper active, simple, and novel. New criminal malware used against Chinese-speakers. More on the materiality of cyberattacks.
  • BEERS WITH TALOS – Rachel Tobac on social engineering, expanding opportunities for women in cybersecurity

Projects

TryHackMe – SOC Level 1(74 % Complete): Windows Forensics 1 – Complete

Weekly Cybersecurity Wrap-up 9/11/23

Keep learning. Next month is cybersecurity month!!

Webinars

Articles

Podcasts

Projects

TryHackMe – SOC Level 1 (72 % Complete): Investigating with Splunk, Benign, DFIR: An Introduction – Complete

Weekly Cybersecurity Wrap-up 9/4/23

No webinars this week, but some fun articles!

Articles

Podcasts

Projects

TryHackMe – SOC Level 1: Splunk Basics, Incident Handling with Splunk – Complete

Weekly Cybersecurity Wrap-up 8/28/23

Little behind this week. It’s been busy. Still plugging away at learning all I can though.

Webinars

  • (ICS)2 – The Impact of Artificial Intelligence on the Cybersecurity Industry – 8/30/23 – The impact of artificial intelligence (AI) on the cybersecurity industry is among the hottest topics discussed and debated amongst security professionals. From a positive perspective, AI has infused a myriad of threat detection and prevention platforms with newfound methods for uncovering sophisticated threats. It has also helped short-staffed security teams automate complex processes, such as incident validation and response. But AI also comes at a price. Join Steve Piper, Founder & CEO of CyberEdge (and proud CISSP), as he addresses the good, the bad, and the ugly outcomes of artificial intelligence.

Articles

Podcasts

Projects

TryHackMe – SOC Level 1: Introduction to SIEM, Investigating with ELK 101, ItsyBitsy – Complete

Weekly Cybersecurity Wrap-up 8/20/23

Last week was vacation, but I’m back and as before devoted to learning as much about cybersecurity as possible.

Webinars

  • PCI DSS v4.0 – Navigating the Seven Cs – Verizon – Sam Junkin, Matt Arntsen, Ciske van Oosten & Peggy Nolan – Join us for the third installment of our webinar series, as we help companies act with confidence in light of significant updates to the flagship Payment Card Industry Data Security Standard (PCI DSS v4.0). Earlier in the series, we discussed the impact of PCI DSS v4.0, how to interpret key components and how to develop a plan to meet complex requirements. Now, we chart our course to conquer the “seven Cs” — the top constraints that most businesses face as they move forward in their transition. One of the most important things businesses must do to be successful is to take action now — and our panel is ready to show you how.

Articles

Podcasts

Projects

  • TryHackMe – SOC Level 1 (62% Complete) – Introduction to SIEM- Complete

Weekly Cybersecurity Wrap-up 8/7/23

Every week I post what I have been working on in my journey to learn more about cybersecurity and hopefully land a job in the field. I hope these post can help others on their cyber journeys.

Webinars

Articles

Podcasts

  • Darknet Diaries 136: TEAM XECUTER – Team Xecuter was a group involved with making and selling modchips for video game systems. They often made mods that allowed the video game system to rip games or play pirated games. It was a crowd favorite in the modding scene. Until it all fell apart.
  • Smashing Security 334: Acoustic attacks, and the tears of a crypto rapper

Projects

  • TryHackMe – SOC Level 1 (61% Complete)
    • Wazuh – Complete