[SOC-Level 1] Tryhackme - Snort Live Attacks
TryHackMe- Snort Live Attacks Scenario 1: Brute-Force First of all, start Snort in sniffer mode and try to figure out the attack source, service and port. Then, write an IPS rule and run Snort ...
TryHackMe- Snort Live Attacks Scenario 1: Brute-Force First of all, start Snort in sniffer mode and try to figure out the attack source, service and port. Then, write an IPS rule and run Snort ...
TryHackMe- Snort Challenge Task 3: Writing IDS Rules (PNG) Investigate the logs and identify the software name embedded in the packet. Investigate the logs and identify the image format emb...
TryHackMe- Snort Challenge Task 1: Writing IDS Rules (HTTP) What is the number of detected packets? What is the destination address of packet 63? What is the ACK number of packet 64? Wh...
TryHackMe- Friday Overtime Scenario: Disclaimer Please note: The artefacts used in this scenario were retrieved from a real-world cyber-attack. Hence, it is advised that interaction with the ar...
Level 27 Username: bandit27 Password: upsNCc7vzaRDx6oZC6GiR6ERwe1MowGB Task: https://overthewire.org/wargames/bandit/bandit28.html There is a git repository at ssh://bandit27-git@localhost/hom...
Level 26 Username: bandit26 Password: s0773xxkk0MXfdqOfPRVr9L3jJBUOgCZ Task: https://overthewire.org/wargames/bandit/bandit27.html Good job getting a shell! Now hurry and grab the password for ...
Level 25 Username: bandit25 Password: iCi86ttT4KSNe1armKiwbQNmB3YJP3q4 Task: https://overthewire.org/wargames/bandit/bandit26.html Logging in to bandit26 from bandit25 should be fairly easy… T...
TryHackMe- Agent Sudo Tasks Enumerate How many open ports? How you redirect yourself to a secret page? What is the agent name? Hash cracking and brute-force ...
TryHackMe- Bounty Hunter Questions: Find open ports on the machine Who wrote the task list? What service can you bruteforce with the text file found? What is the users password? user....
TryHackMe- Simple CTF Questions: How many services are running under port 1000? What is running on the higher port? What’s the CVE you’re using against the application? To what kind of v...