- 33
- 90 503
Micahs0day
United States
เข้าร่วมเมื่อ 14 ม.ค. 2021
The ability to create is a blessing. 🙏🏽
LetsDefend - New Scheduled Task Created (SOC144)
In this video we will be using LetsDefend, a Blue Team focused Cybersecurity training platform, to investigate an alert in our SIEM, assuming the role of a SOC analyst.
Alert Info:
Event ID #91 - SOC144 - New Scheduled Task Created
Follow/Connect:
Blog: micahsoday.github.io
LinkedIn: www.linkedin.com/in/micah-funderburk/
TryHackMe: tryhackme.com/p/M0dChild
github.com/micahs0Day/
Alert Info:
Event ID #91 - SOC144 - New Scheduled Task Created
Follow/Connect:
Blog: micahsoday.github.io
LinkedIn: www.linkedin.com/in/micah-funderburk/
TryHackMe: tryhackme.com/p/M0dChild
github.com/micahs0Day/
มุมมอง: 124
วีดีโอ
Cloud Resume Challenge | CloudFront + ACM (HTTPS & DNS)
มุมมอง 1093 หลายเดือนก่อน
Cloud Resume Challenge: - cloudresumechallenge.dev/docs/the-challenge/aws/ Let's Connect: LinkedIn: www.linkedin.com/in/micah-funderburk/ Blog: micahs0day.github.io/ GitHub: github.com/Micahs0Day
PwnedLabs | Exploit Kubernetes Overly Permissive RBAC
มุมมอง 1253 หลายเดือนก่อน
Your company has been hired to perform a pentest on a new client's digital infrastructure. After some initial reconnaissance, you discover that you have access to an EC2 instance with compromised credentials. This instance might serve as a gateway to their Kubernetes environment. Your mission is to leverage these credentials, explore potential vulnerabilities, and exploit weaknesses in their Ku...
Cloud Resume Challenge | Static Website using Amazon S3
มุมมอง 2749 หลายเดือนก่อน
Thanks for watching!! Resume Templates: freefrontend.com/html-resume-templates/ Customized Template: github.com/Micahs0Day/CloudResumeChallenge/tree/main/website Let's Connect: LinkedIn: www.linkedin.com/in/micah-funderburk/ Blog: micahs0day.github.io/ GitHub: github.com/Micahs0Day
Cloud Resume Challenge | Beginner Cloud Project (Overview)
มุมมอง 76010 หลายเดือนก่อน
Link to Challenge: cloudresumechallenge.dev/ Let's Connect: LinkedIn: www.linkedin.com/in/micah-funderburk/ Blog: micahs0day.github.io/ GitHub: github.com/Micahs0Day Thanks for Watching!!
PwnedLabs | LOOT Exchange, Teams, and SharePoint Data with GraphRunner
มุมมอง 24210 หลายเดือนก่อน
This beginner-friendly lab showcases GraphRunner, a Microsoft 365 post-exploitation toolset, and how it can be used to loot data from Exchange Online, Teams, SharePoint and OneDrive. We'll also get hands-on experience with MFASweep, PowerShell and Azure SQL Database. Let's Connect: LinkedIn: www.linkedin.com/in/micah-funderburk/ Blog: micahs0day.github.io/ GitHub: github.com/Micahs0Day Thanks f...
Microsoft Graph API | App Registration & Graph Activity Logs
มุมมอง 48711 หลายเดือนก่อน
Thanks for watching! Code Samples / Links used in video: github.com/microsoftgraph/msgraph-sdk-python learn.microsoft.com/en-us/graph/api/user-list?view=graph-rest-1.0&tabs=python github.com/microsoftgraph/msgraph-sdk-python/blob/main/docs/users_samples.md developer.microsoft.com/en-us/graph/graph-explorer github.com/Micahs0Day/devcontainers/tree/master/MicrosoftGraph/.devcontainer Let's Connec...
Docker x VSCode | Getting Started with Dev Containers
มุมมอง 88511 หลายเดือนก่อน
Thanks for watching! Code samples located here: github.com/Micahs0Day/devcontainers Let's Connect: LinkedIn: www.linkedin.com/in/micah-funderburk/ Blog: micahs0day.github.io/ GitHub: github.com/Micahs0Day #devcontainers #vscode #dockercontainer
Deploying Linux Based Amazon EC2 Instance in AWS
มุมมอง 194ปีที่แล้ว
In this Video, we will deploy and learn about AWS architecture (VPC/Subnet/Internet Gateway/Route table/Security Group/EC2 Instance), with the end goal of creating a SSH Server using Amazon EC2. All in under 10 minutes!! Thanks for watching! Let's Connect: LinkedIn: www.linkedin.com/in/micah-funderburk/ Twitter: Micahs0Day Blog: micahs0day.github.io/ GitHub: github.com/Micahs0Day Tr...
Certified CyberDefender (CCD) | First Impressions & Course Overview
มุมมอง 1.3Kปีที่แล้ว
Affiliate Link: cyberdefenders.org/?via=3d0536 Follow/Connect: GitHub: github.com/Micahs0Day LinkedIn: www.linkedin.com/in/micah-funderburk/ TryHackMe: tryhackme.com/p/M0dChild 00:00 Intro 00:40 Discount code 01:03 Company Overview 02:50 Certification Summary 05:20 Why the CCD may or may not be right for you 07:27 Why practical/hands on training is KING 09:10 How will this training help your or...
PwnedLabs | Intro to AWS IAM Enumeration
มุมมอง 675ปีที่แล้ว
We have been tasked with investigating an AWS IAM user after suspicious activity was detected. In order to retrace the steps that the attacker took, we have to learn about AWS policies, roles, and permissions, then use our newfound knowledge to determine how the actor was able to access confidential information. Finally, we will attempt to access these secrets ourselves! Room Notes: fluorescent...
Going for Gold | BTL1 | I Passed!
มุมมอง 12Kปีที่แล้ว
In this video, I will provide an honest review of the Blue Team Level 1 exam, which is offered by Security Blue Team. This exam is designed for entry-level analysts and is hands-on, practical, and can last for up to 24 hours. I will also share my pros and cons of the exam and offer tips that can help you pass the exam on the first attempt, just like I did! Follow/Connect: Blog: micahsoday.githu...
TryHackMe - Benign (Splunk Investigation)
มุมมอง 1.6Kปีที่แล้ว
In this video I will be using Splunk to investigate a compromised host and to retrace the steps of an unknown threat actor. Follow/Connect: Blog: micahsoday.github.io LinkedIn: www.linkedin.com/in/micah-funderburk TryHackMe: tryhackme.com/p/M0dChild Link to Room: tryhackme.com/room/benign
TryHackMe - Investigating Windows
มุมมอง 7Kปีที่แล้ว
Follow/Connect: Blog: micahsoday.github.io LinkedIn: www.linkedin.com/in/micah-funderburk TryHackMe: tryhackme.com/p/M0dChild Links: tryhackme.com/room/investigatingwindows www.sentinelone.com/cybersecurity-101/mimikatz/ www.malwarebytes.com/blog/news/2016/09/hosts-file-hijacks
TryHackMe - The Greenholt Phish
มุมมอง 959ปีที่แล้ว
Follow/Connect: Blog: micahsoday.github.io LinkedIn: www.linkedin.com/in/micah-funderburk TryHackMe: tryhackme.com/p/M0dChild Link to Room: tryhackme.com/room/phishingemails5fgjlzxc
TryHackMe - Outlook NTLM Leak (CVE-2023-23397)
มุมมอง 1.8Kปีที่แล้ว
TryHackMe - Outlook NTLM Leak (CVE-2023-23397)
Work From Home Desk Overhaul (Cybersecurity Edition)
มุมมอง 311ปีที่แล้ว
Work From Home Desk Overhaul (Cybersecurity Edition)
TryHackMe (Hackerween) PrintNightmare, again!
มุมมอง 6422 ปีที่แล้ว
TryHackMe (Hackerween) PrintNightmare, again!
LetsDefend (SOC Analyst) - Event ID #113: Suspicious Certutil.exe Usage
มุมมอง 2.1K2 ปีที่แล้ว
LetsDefend (SOC Analyst) - Event ID #113: Suspicious Certutil.exe Usage
TryHackMe - Splunk BOTSv1 (APT Scenario) Walkthrough -
มุมมอง 8K2 ปีที่แล้ว
TryHackMe - Splunk BOTSv1 (APT Scenario) Walkthrough -
LetsDefend (SOC Analyst) - Event ID #119: Possible IDOR Attack Detected
มุมมอง 1.6K2 ปีที่แล้ว
LetsDefend (SOC Analyst) - Event ID #119: Possible IDOR Attack Detected
Cybersecurity (SOC Analyst) | Top 3 Underrated Skills
มุมมอง 6542 ปีที่แล้ว
Cybersecurity (SOC Analyst) | Top 3 Underrated Skills
TryHackMe! - H4cked Walkthrough - [EASY]
มุมมอง 4.6K2 ปีที่แล้ว
TryHackMe! - H4cked Walkthrough - [EASY]
LetsDefend (SOC Analyst) - Event ID #74: Data Leak via Mailbox Forwarding Detected
มุมมอง 7842 ปีที่แล้ว
LetsDefend (SOC Analyst) - Event ID #74: Data Leak via Mailbox Forwarding Detected
CompTIA Cybersecurity Analyst (CySA+) | CS0-002 | Resources & Tips to Pass!
มุมมอง 21K2 ปีที่แล้ว
CompTIA Cybersecurity Analyst (CySA ) | CS0-002 | Resources & Tips to Pass!
LetsDefend (SOC Analyst) - Event ID #89: Multiple HTTP 500 Response
มุมมอง 7472 ปีที่แล้ว
LetsDefend (SOC Analyst) - Event ID #89: Multiple HTTP 500 Response
LetsDefend (SOC Analyst) - Event ID #93: Phishing Email Detected - Excel 4.0 Macros
มุมมอง 7K3 ปีที่แล้ว
LetsDefend (SOC Analyst) - Event ID #93: Phishing Email Detected - Excel 4.0 Macros
LetsDefend (SOC Analyst) - Event ID #92: Ransomware Detected
มุมมอง 10K3 ปีที่แล้ว
LetsDefend (SOC Analyst) - Event ID #92: Ransomware Detected
Congratulations! I'm from Brazil and i follow you! Thansk for share your content!
Thanks bro i was looking for hands on training. Good looking out.
Sweetttttttttttttt
Nice video🥰🥰🥰🥰
Really helpful! Thanks
Hi Micah,i am doing this course right now and i decided to investigate if i can use Chatgpt as an assistant. Using Unicoder to convert the .yml file ,this is what i got from it: process.command_line:*AnyDesk\.exe\ \-\-install* OR process.executable:C\:\\ProgramData\\AnyDesk\\AnyDesk\.exe yours is: (process.command_line.text:--install AND process.command_line.text:--start-with-win AND process.working_directory.text\\ProgramData\\AnyDesk.exe) and this is the adjusted one without the * and \ characters they tell us in the end in the tip and i get no results. So i asked Chatgpt to provide an explanation why your query is working and mine isn't and it has to with using the right fields to use but the query that i got was from Unicoder.io How is it that you got .text in the end using Unicoder.io while providing the same yml code to convert and mine is without. When using your syntax i get 1 hit but using the syntax from Unicoder.io without the .text i get no results.
Damn maybe I'm dumb (nah) bc this shit is all over the place smh...I'm comin tho
Would anyone know if the majority of the course content is in text, and if it is, are we talking about (60% text - 40% videos) or more for the text part?
you helped me out, thanks!
I may have missed this but is the exam open book?
Yep, sure is.
@@Micahs0day Appreciate the response! Just enrolled in the Blue Team cert after watching your video.
@@gilbertorona9142 Nice! Good luck!
Micah- great experience in cyber. I'm seeking cyber analysts for a project I'm working for George Mason University. Would you kindly take a 20min call with me to interview you?
I'm in awe of this extensive training!! Keep up the great work #1Son 👍 👏
The URL is not related to this ransomware attack incident. You can see in those log of that contains the URL are different date and time with this incident. From threat intelligence, there is no network communication by the ransomware
How to see the mailbox, I cannot see any kind of mailbox on my platform
i think its only in premium version.
Great video! Do you like LetsDefend or THM more?
Thank you
GUY IS FULLY COKED OUT
Thanks man, sweet, short and to the point.
Hey man your heart is in the right place. More content so your channel can grow please
I'm taking the exam on the 15th of next month (NZ time). I'm planning to make sure I've done every lab the maximum number of times I can, doing a bunch of the BTLO labs etc, etc. I'm also planning to write down every question with a pencil and then make notes about the question (really hoping to avoid misreading a question and there is so much time to do all of this). Wish me luck and thanks for this vid!
Good luck! You got this!
Hey man… I just wanna thank you for yours videos, these videos are helping me a lot. Please keep going.
please do more alerts bro they are useful
very theoric lab wonderful explanation
I used this as a guide to help me thank you!
Hey Micah, Are you able to use your notes on this exam? I have procedures for artifact gathering written in a Notion document. Will I be able to use these during the actual exam?
Yep, sure can.
Hymic. I already have a fundamental understanding of cybersecurity, ethical hacking, networks, systems, I want to go into soc analyst, I convend it's tryhackme or letsdefend? tryhackme I understand it's more beginner, and the price is similar to both
I love this! it is hard to find detailed explanations of THM rooms and your video was perfect!
I learned more from this than most certification courses 😅
i did CCST cyber security and IBM Cyber Fundamental,now am planning to do blue level 1,should i do this...Any Senior may guide me
Yeah, this is going to be a bit more advanced. Go for it!
Thx
hi, i've run through the steps but receive the following error after executing the python script. are you able to advise please? [+] Connecting to ncacn_np:..... [+] Bind ok [+] Failed to find driver.
thanks for your video, i'm new here, but the Tyrhackme prompted "the room is private, Only users with the room link can access this room", how should i access, i have crerated a account, please...
Please upload more! I love your content as a noob trying to get into cloud!
About to upload the next video now. Sorry for the wait
Hey fine to find you,could you help me which one is better cdsa or ccd?
Still tempted, sec+ finish soon. But i keep hearing how basic this course is... but maybe anyway..
What are you using to copy and paste youre notes on? That looks like great help wile analysing. I could do with using that my self.
Stumbled across your channel by chance, absolutely love the work Fam! Amazing Video, Keep Pushing, SALUTE!!!
I've passed it too, it's a dog shit cert that gives you 0 knowledge and is copy/paste from open source and won't get you anywhere
I wonder why they got rid of this room?
Thank you for the review! I will try my first attempt at the exam tomorrow morning! Lets go :D
Thank you man for this. Your video helps me a lot as I don't know what to do in the LetsDefend.
'Promo sm' 🎶
Congrats bro! How do you make these videos? Do you use a special software or just screen record using windows and edit in premier?
shotcut
Is it better to take this over sec+?
Im a truck driver and all i did for net+ and sec+ was practice test and passed them in one go😂
Bro I did a video for TH-cam and realized I sniffed 100 times and swaying in the seat. I noticed I did the chair sway in an interview for another career. So yea recording yourself def helped me.
Ggwp! Are you allowed to use internet during the exam? Google etc
Yep, sure can.
What's the difference in gold and silver?
Gold is awarded to those who scored 90% or above on the test.
I'm also in the middle of the Cloud Resume challenge and have found a few resume site coding tutorials here on TH-cam that look pretty decent. Good luck with the challenge and thanks for starting your video off with a bit of scripture.
Nice! Good luck with everything. I appreciate it! Just trying to spread the word in any way possible. I appreciate you.
Hey bro fk w your vid wanted to know what VM I should use I’m a beginner and have my google cert and I’m currently studying for my Btl1 exam and need more practice
I use an old Dell OptiPlex to run ESXI. However, virtualbox works just fine.