惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

WordPress大学
WordPress大学
Engineering at Meta
Engineering at Meta
D
DataBreaches.Net
月光博客
月光博客
Recent Announcements
Recent Announcements
Google DeepMind News
Google DeepMind News
U
Unit 42
腾讯CDC
爱范儿
爱范儿
J
Java Code Geeks
有赞技术团队
有赞技术团队
Blog — PlanetScale
Blog — PlanetScale
N
Netflix TechBlog - Medium
B
Blog
Stack Overflow Blog
Stack Overflow Blog
GbyAI
GbyAI
T
The Blog of Author Tim Ferriss
小众软件
小众软件
freeCodeCamp Programming Tutorials: Python, JavaScript, Git & More
Y
Y Combinator Blog
大猫的无限游戏
大猫的无限游戏
Microsoft Azure Blog
Microsoft Azure Blog
T
Tailwind CSS Blog
钛媒体:引领未来商业与生活新知
钛媒体:引领未来商业与生活新知

Black Hills Information Security, Inc.

Bad Habits: An ANTISOC Operation Same Problem, Different Angles: When Red Team and Blue Team Actually Talk to Each Other How to Identify and Exploit New Vulnerabilities Swapper – A Pure Regex Match/Replace Burp Extension A Practical Guide to BloodHound Data Collection Network Engineering Basics Signed, Trusted, and Abused: Proxy Execution via WebView2 Getting Started In Pentesting – Advice From The BHIS Pentest Lead Cloud Security: Tips and Resources for Securing the Cloud Lessons From A Chatbot Incident How to Lead Effective Tabletops Understanding GRC: How to Navigate Risks and Compliance Standards The “P” in PAM is for Persistence: Linux Persistence Technique Malware Analysis: How to Analyze and Understand Malware OSINT: How to Find, Use, and Control Open-Source Intelligence What to Do with Your First Home Lab When the SOC Goes to Deadwood: A Night to Remember Social Engineering and Microsoft SSPR: The Road to Pwnage is Paved with Good Intentions Common Cyber Threats Finding the Right Penetration Testing Company Deceptive-Auditing: An Active Directory Honeypots Tool The Curious Case of the Comburglar How to Set Smart Goals (That Actually Work For You) Inside the BHIS SOC: A Conversation with Hayden Covington Abusing Delegation with Impacket (Part 3): Resource-Based Constrained Delegation Why You Got Hacked – 2025 Super Edition Abusing Delegation with Impacket (Part 2): Constrained Delegation Abusing Delegation with Impacket (Part 1): Unconstrained Delegation GoSpoof – Turning Attacks into Intel Model Context Protocol (MCP)
Webcast: Infosec Mentoring | How to Find and Be a Mentor ...
BHIS · 2020-10-20 · via Black Hills Information Security, Inc.

, , , , ,



Slides


They say it “takes a village” to help raise a child… well, it also takes a village to help raise an infosec professional. With so many technologies, techniques, and tools and the need for soft-skills and the ability to navigate different types of relationships, we all need help. That’s where a formal mentor can be your guide into the unknown.

We ALL can benefit from being mentored and being a mentor.

In this live Black Hills Information Security (BHIS) webcast, we’ll discuss:
– How to know if you need a mentor
– How to find a mentor
– How to be a mentor
– How to be a mentee
– How to ask someone to be a mentor
– Multiple mentors
– Difference between mentors, friends, tutors, career counselors, etc.
– What to discuss during a mentoring session
– How to make the best use of everyone’s time
– When to end a mentoring relationship

Slides for this webcast can be found here: https://www.blackhillsinfosec.com/wp-content/uploads/2020/10/SLIDES_InfoSecMentoring_HowtoFindandBe.pdf

Join Our BHIS Discord Community – https://discord.gg/aHHh3u5

0:00:00 – PreShow Banter™ – We’re There, Trust Us

0:07:33 – PreShow Banter™ – Trace Labs CTF

0:24:47 – FEATURE PRESENTATION: InfoSec Mentoring

0:28:23 – Mentors, the Fresh Maker™

0:30:27 – How To Find a Cult Leader, I Mean Mentor.

0:34:37 – B-Sides Orlando DEMO

0:42:17 – How To Be a Mentor

0:56:12 – How to Be A Mentee

1:03:42 – Your Moment of Self-Doubt

1:05:34 – Will You Be My Mentor?

1:11:56 – Reach Out

1:14:41 – Multiple Mentors

1:16:36 – Mentors, Friends, & Counselors

1:19:11 – You Discuss Me

1:20:29 – Time is Valuable

1:20:47 – This is the End

1:22:28 – End of Show Banter

Special Guests, Trace Labs:

Trace Labs Website: https://tracelabs.org/

conINT Conference Oct 17/18 (3 tracks of intel related talks, workshops, Search Party CTF on Day 2) https://conint.io/

Trace Labs Slack: https://join.slack.com/t/tracelabs/shared_invite/zt-hcje16jm-Gko95KP9471PdUpnzXqy6w

Ongoing OSINT Operations

Sharing of OSINT Resources Trace Labs Events: https://tracelabs.eventbrite.com/

Get involved in Trace Labs:

  1. 24/7 Ongoing Ops in Trace Labs Slack (Check out #ongoing-ops channel)
  2. Search Party CTF Participant
  3. Search Party CTF Volunteer Judge
  4. Contribute OSINT tools to our OSINT VM via Github: https://github.com/tracelabs/tlosint-live

Resources:

  1. Contestant Guide: http://download.tracelabs.org/Trace-Labs-OSINT-Search-Party-CTF-Contestant-Guide_v1.pdf
  2. Judge Guide: http://download.tracelabs.org/Trace-Labs-OSINT-Search-Party-CTF-Judge-Guide_v3.pdf
  3. OSINT VM Based off of Kali Linux: https://www.tracelabs.org/trace-labs-osint-vm/
  4. OSINT VM Webinar Recording: https://youtu.be/yZdOb-NSiAw
  5. Trace Labs YouTube (Training Videos + tools/tips): https://www.youtube.com/c/TraceLabsVideos


We are self-publishing free Infosec Zines called PROMPT#.

PROMPT# will contain: 

  • Infosec articles 
  • Challenging puzzles 
  • Comic book based on real-life hacking adventures 
  • Coloring contests 
  • Bonus Backdoors & Breaches Consultant Cards (print version only) 
  • Other stuffs 

You can check out current and upcoming issues here: https://www.blackhillsinfosec.com/prompt-zine/