Fowsniff CTF - Writeup

CTF Time! This time I’m trying out TryHackMe’s Fowsniff CTF. I’m going into this blind with no prior knowledge, so expect some detours and dead-ends. I’m also going to be censoring any flags/passwords/hashes out. Room overview This boot2root machine is brilliant for new starters. You will have to enumerate this machine by finding open ports, do some online research (its amazing how much information Google can find for you), decoding hashes, brute forcing a pop3 login and much more! ...

November 3, 2024 · 14 min · 2821 words · Ligniform

Over the Wire - Bandit

OverTheWire is a great way to learn Linux commands, and a bit of “““hacking”””. From their own site: The wargames offered by the OverTheWire community can help you to learn and practice security concepts in the form of fun-filled games. There are a few wargames/rooms that are offered. I’ll be going through the ‘Bandit’ room, which is the easiest/first. The Bandit wargame is aimed at absolute beginners. It will teach the basics needed to be able to play other wargames. ...

June 2, 2024 · 21 min · 4310 words · Ligniform

One year on Mastodon

Wowza, already been a year huh? It’s actually been just over a year since I joined Infosec.exchange. I was on Mastodon.Social for a while actually, but moved across a few months later. This is just a quick post I wrote in an hour or two, Looking back on my experience so far. Twitter I joined Twitter sometime in 2016. I had a few content creator friends, and at the time I wanted to work in video games. I was at high-school and I wanted to find an online community. Twitter was the place for that! I connected with a few people and got a few followers. I fell into ‘Web Dev’ Twitter. There were a few ‘big players’ who everyone seemed to follow, and they all seemed to interact with each other. It was nice, but I felt that my follower count (A whole 80!) made me feel like I couldn’t interact with these big accounts. ...

April 25, 2024 · 4 min · 748 words · Ligniform

My Security+ Journey

I recently passed the Security+ (SY0-601). This is my first InfoSec related ceritification, so I thought I might write a bit about what I learned along the way. Way back in April of 2023 I was on a month long trip around Europe. I already knew by that point that I wanted to pivot from the helpdesk to the Security team at my current company. I had expressed my interest, but wanted to show that I was willing to learn outside of work. ...

January 28, 2024 · 5 min · 980 words · Ligniform

GrapheneOS - One year in

I had heard about GrapheneOS a few years ago. I was getting into personal privacy and wanted to stop feeding all my info to big tech. My problem at the time was that only Google Pixel devices are supported (Officially at least). I was a high-school student at the time, so the small amount of money I got from my part-time job mainly went to video games. Privacy could wait. Skip forwards a few years and I finally wanted to take privacy seriously. I was (legally) an adult and I wanted to own what personal data of mine was shared. Once again I looked into GrapheneOS and decided it was time. ...

January 23, 2024 · 5 min · 954 words · Ligniform