n/s/e/w/u/d/ •♬✧♡* INWARD *♡✧♬•

Fractal-Backgrounds-HD.jpg

blag

S02E02 - Attacker Mindset and Methods

Home Discovery

Rachel Tobac Steals CNN Reporter’s Data (~5m) - https://www.youtube.com/watch?v=LYilP-1TwMg
Rachel does social engineering and penetration testing for a living, and this briefly explains how she got his data with very little effort before the yearly Las Vegas infosec conference Defcon.

Scamming Scammers with Kitboga - https://www.youtube.com/channel/UCm22FAXZMw1BaWeFszZxUKw
Kitboga runs a channel dedicated to baiting scammers and wasting their money. They usually operate on a script, so he performs some hilarious misdirection to annoy them while also pointing out the various tactics they use along the way.

Metasploit Unleashed - https://www.offensive-security.com/metasploit-unleashed/
This is an excellent walkthrough to what Metasploit is capable of. Follow along and test things out with your own VM of Metasploit and Metasploitable!

Research Project

(BOOK) - Ghost in the Wires by Kevin Mitnick

An excellent book by a famous hacker from the 90s who ended up working with the FBI to reduce his sentence. Reads like a story and documents a long history of his knack for social engineering combined with cybercrime. Interesting in that his motivation was mostly seeing what he was capable of, rather than abusing the information he discovered.

(BOOK) - Spam Nation by Brian Krebs

Excellent, gripping introduction to the world of organized cybercrime by a tech journalist. Really eye-opening read about the larger networks that run online spam operations to raise money for other illicit operations.

(PROJECT) - OverTheWire Bandit - https://overthewire.org/wargames/

OverTheWire hosts a number of challenges to see the various tiny holes that can be used to escalate privileges, bypass access controls, and evade security measures in so many different ways. They will give you the commands you’ll need to solve the challenge; try poking around and reading the manual pages for each tool to see if you can figure out which parts will help you solve the challenge.

Slides can be found here.

Kahoot quiz can be played here.

Episode available on Twitch or Youtube.

S02E01 - Critical Thinking on Attack/Defense

Home Discovery

Portal 2D - https://portal.wecreatestuff.com/
A wonderful flash remake of the Valve classic puzzler Portal. Portal does a great job of introducing concepts into your your mental model one at a time and forcing you to critically think with them.

Summary of Poor Charlie’s Almanack - https://www.allencheng.com/poor-charlies-almanack-charlie-munger-book-summary-pdf/ 
Charlie Munger is a successful American investor / businessman / philanthropist and close friend of Warren Buffet. His book describes how he overcomes bias and utilizes multiple mental models to make better decisions.

Cognitive Bias Cheat Sheet - https://medium.com/better-humans/cognitive-bias-cheat-sheet-55a472476b18
Great article covering a portion of the many cognitive biases that may cloud our judgment.

Slides can be found here.

Kahoot quiz can be played here.

Episode available on Twitch or Youtube.

S01E04 - Chitchat + Documentation

Home Discovery

Blank Clevernote - https://drive.google.com/open?id=1IBTy5OoToZOD5PAHIqMz-DvNwywmf3tb
I’m a huge fan of Evernote, but it has some annoying limitations with the free version; this TiddlyWiki can be taken and stored anywhere!

Introsec Con - https://www.youtube.com/playlist?list=PLbmA4csMuDLcOosQkmElHAWSbuA_s9x0p
A great pandemic-inspired conference with talks by exceptional Infosec Twitterfolk. Pick one and make an outline of notes while you watch in your brand new knowledgebase!

Goals Worksheet - https://drive.google.com/open?id=16fGQU7Gmhlq8lJ7soF_7OSz_HfAbFSe4
Adapted from my notes on a leadership class by past Tempe mayor Neil Giuliano; I think it’s a great way to get clear about what you want and how you’re going to get it.

Slides can be found here.

Kahoot quiz can be played here.

Episode available on Twitch or Youtube.