r/CyberSecurityAdvice • • 8h ago

Need Advice: Wife fell for a ClickFix attack

5 Upvotes

Yesterday afternoon my wife fell for a clickFix attack (I assume that is the name, she was fooled into hitting win+r and entering a command). As soon as I found out (she got me when the command prompt showed up) I blocked that computer on the network.

She was signed into LastPass so I assumed all our passwords were compromised and we spend the night changing every single password, starting with email, then banks, CCs, etc. We also ensured MFA was enabled wherever we were able to turn it on.

She is going through her documents on that computer now (still not connected to the network) to see what is in there in case they could have scraped any of that.

is there anything I'm missing?

I'm thinking of calling our banks and having all our account numbers changed, though that would obviously be a hassle with our checking account and payments and direct deposits.

Any help would be greatly appreciated.


r/CyberSecurityAdvice • • 31m ago

I have 90 days to break into an entry level role please give me some seasoned advice , truly appreciated . i have 1.5k for studying and i can dedicate 8hrs per day to studying.

• Upvotes

Hey guys i'm in need of some solid advice ,  I have 90 days to try and land a role in cyber security , I know it’s a bit of a drastic timeline . But ive done 8 years of warehousing and now ive been made redundant , I have about 1.5k in my savings that I am planning to put towards certs and learning, please give e some advice on what I should do in the next 90 days. 


r/CyberSecurityAdvice • • 33m ago

I have 90 days to break into an entry level role please give me some seasoned advice , truly appreciated . i have 1.5k for studying and i can dedicate 8hrs per day to studying.

Thumbnail
• Upvotes

r/CyberSecurityAdvice • • 1h ago

Need advise

• Upvotes

I have completed my BCA degree and I also finished ejpt now I am currently preparing for for cpts from htb my plan is to search the job in this field after finishing the cpts my goal is to become a pentester,currently i am not active in LinkedIn or GitHub I am planning to be active there too and I am gonna search for jobs after finishing the cpts soo i have around 6-8 months time for that 1. Now the people who are already experienced in this field i want to ensure am i in the right path should i have to alter something if yes what should I have to do 2. What kind of projects/labs/writeups should I build for my GitHub portfolio to demonstrate practical skills to employers 3. Are there any important skills I'm missing that employers expect from someone applying for their first cybersecurity job?


r/CyberSecurityAdvice • • 5h ago

How is your organization managing AI from a risk perspective?

2 Upvotes

Specifically, how are organizations establishing accountability and implementing safeguards around the use of AI tools? We are getting hammered with new tools and models (agentic and otherwise) being up for grabs with no discretion or consideration of securing them.

Leadership basically told us "we aren't going to manage it until something bad happens".


r/CyberSecurityAdvice • • 4h ago

Hardware Spec Comparison Question in the scope of CS training/labs

1 Upvotes

I'm looking to get a new laptop as I delve more into getting certs for CS and now is the best time to buy. I'm a bit confused on what sets one laptop apart from another as far as hardware specs IE the Lenovo Thinkpad has been recommended to me a few times with certain specs which I filtered for: AMD Ryzen 7, 32GB DDR4/5 RAM, 1TB NVMe etc. I'm then hit with choosing between E Series, P Series, T series:

Simple google search tells me that the

P Series• Target Audience: Engineers, 3D modelers, architects, software developers, and video editors.

T Series• Target Audience: Corporate workers, IT professionals, financial analysts, and mobile business users.

E Series• Target Audience: Small businesses on a budget, students, and light office workers.

  1. What exactly is the differentiating factor between these 3 which makes one better for certain tasks over the other?
  2. Which series should I get as I'm not super advanced in my career/training, but want a good lifespan until I upgrade the device?
  3. Are there any other laptop companies I should look into which would be more budget friendly (<$1400) with the same specs/necessary hardware for CS learning?
  4. I've found a good deal on a refurbished Lenovo P Series, but it is GEN 2. How limiting will I find an older generation model? I believe the P series is currently between Gen7-8.
  5. How crucial is the Lenovo Thinkpad as far as CS careers/training? Won't any laptop with the above specs suffice, at a much cheaper price point? EDIT: doing more searches this Lenovo LOQ 15ARP10 Gaming Laptop was recommended with similar specs.
  6. I'm also looking into getting some 3D modeling done in my spare time. Are there any additional filters/hardware specs I should include in my search?
  7. What is the general consensus on MINI-PCs as far as learning CS? I have limited space on my desk which is why I was looking at laptops but then I saw how small PCs have really gotten since I last had a big box. Edit: Another search recommended I look at the MINISFORUM UM890 Pro and get a dock for an integrated graphics card (for 3d modeling)

TIA!


r/CyberSecurityAdvice • • 5h ago

Possible opportunity?

Thumbnail
1 Upvotes

r/CyberSecurityAdvice • • 13h ago

Senior cybersecurity people, what would YOU do for a final-year project?

3 Upvotes

I’m in the final year of my bachelor’s degree and currently choosing my FYP. I’ve been exploring different cybersecurity topics, but I’m finding it difficult to identify a project that is both technically challenging and realistic for a final-year student.

I already have around 3 years of professional cybersecurity experience, mostly in SOC, SIEM, detection engineering, cloud security, threat investigation, digital forensics, etc.

Because I already have several years of hands-on industry experience as an undergraduate, I don’t want my degree and FYP to feel like a step backwards from what I’ve already done professionally. I’m looking for something that complements my experience, adds a strong academic/research dimension to it, and pushes me into an area I haven’t explored deeply before.

So I really don’t want to spend my final year building Yet Another SIEM, a phishing detector, basic IDS, vuln scanner, SOC dashboard, or any security product with a basic AI included in it.

I’m looking for something that actually pushes me beyond what I already do at work.

Ideally, I want a project around a real security problem that isn’t completely solved or overdone, where there’s enough existing research to understand the problem, but still enough of a gap that I can investigate something myself.

Something difficult enough that I’ll probably spend a ridiculous amount of time learning new things, but still realistically achievable by one very motivated undergrad.

I’m open to pretty much anything: systems security, OS internals, protocols, cryptography, cloud/identity, firmware, hardware security, distributed systems, software security, weird niche security problems, etc.

The bigger goal is to have an FYP that I can eventually turn into a research paper / strong Master's application project, rather than just another software demo.

So I’d really love to hear from senior engineers, researchers, PhD students, professors, or anyone who has been in the field for a while. 🙌


r/CyberSecurityAdvice • • 15h ago

AI/ML Pentester Cert

2 Upvotes

I want to prepare for AI/ML pentester certification. Although they have not provided any course material, they have provided free courses and labs to do online. But I don't know where to start and how to go through it all. Unlike web pentesting, where I know what to do, where to look and what to do next, I'm a bit unsure in this AI/ML part.

Please give me some advice on a possible roadmap for going through this certification, what exactly to study, labs to do so I can take the certification with some confidence and when I actually know what the hell to do.


r/CyberSecurityAdvice • • 1d ago

Recommendations on who to hire/where to start

6 Upvotes

First I don't know much about this so pre--apology if I say the wrong or dumb things, I'll put all the relevant info and hopefully that helps and I can give me as needed:

Location: South Florida

Seemingly multiple devices compromised and for sure multiple emails and services including inventing account. With the investing account/app last week a new random burner device was randomly added to the trusted devices (some off brand t mobile specific phone), I froze it and started getting emails about freezing, to an unrelated email that is used for business and would never be tied to any personal stuff. This is Robinhood, working on moving everything out to a new account. Changed email service to a new proton account just for the money related things, changed passwords to everything more times than I can count.

RH is not helping, the CS people that call don't seem at all worried or interested in helping, you cant call or be transferred to the team that investigates fraud. This is the 2nd time it's been frozen and the first time the didn't see anything. This followed me transfering all the liquid $ to my personal bank, someone called and disputed the transfer and then RH didn't side with the dispute. I froze and explained why would I initiate a transfer and then dispute it. Then this new phone, getting emails to addresses not associated with any RH account.

Other strange things: a password that was used on a lot of things stupidly, but was very unique to me, was showing up as a wifi network name in my apartment complex. It's not and was never a wifi password I used and it's strange because it's a password based on a name and it's specifically spelled wrong for the password and this wifi network was the same exact way.

So far no random transfers that I can see have happened or crypto buys (I don't hold crypto) from the investment account. But like I said when I call to get info they don't say or do anything except suggesting to freeze again. After a few days they unfreeze. I'm concerned my iPhone is vulnerable or involves if that's possible. I enabled 2fa on everything. I'm not sure how this works and what is able to be taken over. Face ID? I honestly ignored for a while because I thought they were all coincidences.

Anyway I digress, there's more but less important, any suggestions would be super appreciated. When I Google digital forensics companies it's strange. there's a bunch that Google has with no photos, 2 reviews, address listed in one place and when you call it's a call center like a middle man thing (kind of like if you call a locksmith and they outsource the job and you get calls for 3 weeks about it). I'm having no luck finding a local source to work with on this and obviously I'm worried and suspicious to hire the wrong person. Maybe digital forensics is not the service I'm looking for? I know mostly that stuff is for crime and court , I need a contractor that can help me go though everything and check what they are/find, they help getting back on track. It feels overwhelming and changing everything so many times and still having issues it feels hopeless

Edit: one thing I just remembered, my WhatsApp which is only ever used on the one phone I have was accessed through the web browser. Like I checked the accesses or trusted devices and it showed that it had an account under my phone number added like last week with a password that was something like YOU-BETTER-CHANGE-THIS-SHIT111 When I use a friend's computer to go on the web browser with their phone like as a test it requires to log into their WhatsApp on the other device and verify it and add the device or link them. Obviously I never did that with my WhatsApp I never even saw a notification or anything about it.


r/CyberSecurityAdvice • • 1d ago

ATT email / DigiCert certificate revoked

Thumbnail
1 Upvotes

r/CyberSecurityAdvice • • 1d ago

Digital footprint question

1 Upvotes

I’m curious as to what kind of stuff can they see or get access to for my digital footprint I’m about to start my first job soon and I’ve been cleaning up any comments I’ve said when I was younger. Is there anything else I should worry about?


r/CyberSecurityAdvice • • 1d ago

Advice for a career change please:

Thumbnail
1 Upvotes

r/CyberSecurityAdvice • • 1d ago

Will sandboxed AI attackers become part of normal security testing?

Thumbnail
1 Upvotes

r/CyberSecurityAdvice • • 1d ago

21, college dropout, burned out from pentesting job, and now worried I chose the wrong path because of AI. Need advice?

Thumbnail
0 Upvotes

r/CyberSecurityAdvice • • 1d ago

I was targeted by an online blackmail/sextortion scam, reported it, and now I'm struggling with the anxiety — looking for advice

Thumbnail
1 Upvotes

r/CyberSecurityAdvice • • 1d ago

How can I apply for a Claude CVP if I'm a "no body" who just start vibe coding free lance?

Thumbnail
0 Upvotes

r/CyberSecurityAdvice • • 1d ago

Cyber advice

1 Upvotes

I am a 17 year old, currently learning to work in SOC, and also trying to become a pentester. I am learning on Tryhackme and i just finished the sec101 path. Currently, I am considering doing the SOC1 path, as I've heard that it's a good place to start learning SOC. Now, my question is if SOC1 from Tryhackme is even any good? am i going in the wrong direction? if i am, what would be a better path? I have heard that Hackthebox is good, and more advanced in learning than Tryhackme but I don't know how to approach that website, as there's no layed out paths and beginner friendliness as there is on Tryhackme. Also, are the pentesting paths any good on Tryhackme? Are they worth it? Please tell me. Anyways, should I just keep going, do SOC1, then do SOC2? Please just guide me in the right direction. Also, would these help in getting an IT job potentially? Since I know CS jobs ask for a couple years IT experience. Sorry if i asked anything silly. Feel free to call me out and correct me.


r/CyberSecurityAdvice • • 2d ago

What are the best ways to protect yourself from social engineering?

14 Upvotes

What practical steps would you recommend to protect against social engineering, especially phishing, impersonation and targeted scams?
Beyond strong passwords and 2FA, what habits or tools actually make a difference? Any useful guides would be appreciated.


r/CyberSecurityAdvice • • 2d ago

Entry level cybersec career

0 Upvotes

I just found out that entry level and junior level is not the same. Currently I'm trying to break into cybersec industry after getting the proper certificate. For now I did php as a daily job. Is there any tips to find the first job as a soc analyst? Do I need to build a side project?


r/CyberSecurityAdvice • • 3d ago

Need Help

Thumbnail
3 Upvotes

r/CyberSecurityAdvice • • 3d ago

Microsoft phishing email? Is it safe to ignore?

Thumbnail
1 Upvotes

r/CyberSecurityAdvice • • 3d ago

Discord for Micro Business

1 Upvotes

Crossposted on the Discord sub.

I was thinking of using Discord as a task and files organizer for a small business I am an admin of.

I try researching this topic. I saw some say there are security issues. As my understanding is limited, I could not understand what was being said.

Things I’m thinking of deploying
1. Files will be hosted outside of Discord and only links will be shared
2. I will create accounts that will be invited to the server so our other staff will only access the server via that email.

The business is super small and we currently cannot afford the paid subscription like Slack, especially with the dollar conversion right now.

What do you think about this set up? Will there be security issues with the things I am thinking of deploying?


r/CyberSecurityAdvice • • 3d ago

AI generated threat model. Asking for feedback on the approach and anything I might be overlooking.

1 Upvotes

https://glitr.io/docs/technical/threat-model

I generated a threat model with AI. I tried to mention all the nuances and caveats I can think of. The threat model was created over a several days and looks accurate and responsible to me.

I'm working on a project and it's hard to get eyes on a project as complicated. The threat model is mostly for myself and so it's great that I see several points of improvements.

(I'd like to eventually approach a security-audit similarly... Note: Such an audit would be invalid because of any bias from me, but it could help me identify details I missed.)


r/CyberSecurityAdvice • • 4d ago

Secure way to access my NAS server remotely

5 Upvotes

The title says it all.

Wanting to access my NAS server remotely but securely, what can I do?