Cyber Security & Tech Articles

Sigma Rules Explained | TryHackMe Sigma
Sigma Rules Explained | TryHackMe Sigma
Most SOC analysts struggle to standardize detections across platforms. That’s where Sigma comes in , a YAML-based, open-source language that makes writing and sharing SIEM rules effortless. With Sigma, you can: Create... Read more...
CCSP vs AWS Security Specialty : Which One Actually Gets You Hired?
CCSP vs AWS Security Specialty : Which One Actually Gets You Hired?
I just finished breaking down two of the most common cloud security certifications people debate over: CCSP and AWS Certified Security – Specialty. Here’s the short version CCSP is vendor-neutral, great for architecture, governance, and... Read more...
TryHackMe OSCP Retro Walkthrough
TryHackMe OSCP Retro Walkthrough
Just finished the Retro machine on TryHackMe and wrote this clean walkthrough. In short: I found three independent ways to land SYSTEM on Windows Server 2016 : WordPress web path... Read more...
Steel Mountain TryHackMe  Walkthrough
Steel Mountain TryHackMe Walkthrough
TL;DR: initial RCE on HttpFileServer 2.3 (port 8080) → netcat reverse shell as Bill → upgrade to Meterpreter → run PowerUp → exploit service with weak permissions (Advanced System Care) by overwriting ASCService.exe → get... Read more...
TryHackMe Nessus room Walkthrough
TryHackMe Nessus room Walkthrough
I followed the TryHackMe/Nessus walkthrough and wrote up a compact playbook for folks new to Nessus. Short version up-front, then steps + real lab findings and tips. Install Nessus Essentials,... Read more...
The Dirty Secrets of Tech and Cybersecurity Creators
The Dirty Secrets of Tech and Cybersecurity Creators
The Clickbait Circus: How Tech Creators Play You Like a Fiddle Let’s be honest: if you’ve scrolled through your feed lately, you’ve probably been ambushed by some dramatic thumbnail of... Read more...
From User to Domain Admin Explained | HackTheBox TombWatcher Writeup
From User to Domain Admin Explained | HackTheBox TombWatcher Writeup
One forgotten AD cert and an old deleted account can hand an attacker the whole domain. In the recently retired HTB box called TombWatcher, I started from a normal user... Read more...
Memory Corruption in Web Applications | HackTheBox Rainbow Writeup
Memory Corruption in Web Applications | HackTheBox Rainbow Writeup
Introduction In HackTheBox Rainbow, my initial analysis identified a custom Windows webserver executable. I’ll proceed by manually fuzzing its input vectors to find a memory corruption vulnerability. Once a repeatable... Read more...