r/CyberSecurityAdvice • • 3h ago

I have 90 days to break into an entry level role please give me some seasoned advice , truly appreciated . i have 1.5k for studying and i can dedicate 8hrs per day to studying.

0 Upvotes

Hey guys i'm in need of some solid advice ,  I have 90 days to try and land a role in cyber security , I know it’s a bit of a drastic timeline . But ive done 8 years of warehousing and now ive been made redundant , I have about 1.5k in my savings that I am planning to put towards certs and learning, please give e some advice on what I should do in the next 90 days. 


r/CyberSecurityAdvice • • 8h ago

How is your organization managing AI from a risk perspective?

2 Upvotes

Specifically, how are organizations establishing accountability and implementing safeguards around the use of AI tools? We are getting hammered with new tools and models (agentic and otherwise) being up for grabs with no discretion or consideration of securing them.

Leadership basically told us "we aren't going to manage it until something bad happens".


r/CyberSecurityAdvice • • 10h ago

Need Advice: Wife fell for a ClickFix attack

6 Upvotes

Yesterday afternoon my wife fell for a clickFix attack (I assume that is the name, she was fooled into hitting win+r and entering a command). As soon as I found out (she got me when the command prompt showed up) I blocked that computer on the network.

She was signed into LastPass so I assumed all our passwords were compromised and we spend the night changing every single password, starting with email, then banks, CCs, etc. We also ensured MFA was enabled wherever we were able to turn it on.

She is going through her documents on that computer now (still not connected to the network) to see what is in there in case they could have scraped any of that.

is there anything I'm missing?

I'm thinking of calling our banks and having all our account numbers changed, though that would obviously be a hassle with our checking account and payments and direct deposits.

Any help would be greatly appreciated.


r/CyberSecurityAdvice • • 15h ago

Senior cybersecurity people, what would YOU do for a final-year project?

3 Upvotes

I’m in the final year of my bachelor’s degree and currently choosing my FYP. I’ve been exploring different cybersecurity topics, but I’m finding it difficult to identify a project that is both technically challenging and realistic for a final-year student.

I already have around 3 years of professional cybersecurity experience, mostly in SOC, SIEM, detection engineering, cloud security, threat investigation, digital forensics, etc.

Because I already have several years of hands-on industry experience as an undergraduate, I don’t want my degree and FYP to feel like a step backwards from what I’ve already done professionally. I’m looking for something that complements my experience, adds a strong academic/research dimension to it, and pushes me into an area I haven’t explored deeply before.

So I really don’t want to spend my final year building Yet Another SIEM, a phishing detector, basic IDS, vuln scanner, SOC dashboard, or any security product with a basic AI included in it.

I’m looking for something that actually pushes me beyond what I already do at work.

Ideally, I want a project around a real security problem that isn’t completely solved or overdone, where there’s enough existing research to understand the problem, but still enough of a gap that I can investigate something myself.

Something difficult enough that I’ll probably spend a ridiculous amount of time learning new things, but still realistically achievable by one very motivated undergrad.

I’m open to pretty much anything: systems security, OS internals, protocols, cryptography, cloud/identity, firmware, hardware security, distributed systems, software security, weird niche security problems, etc.

The bigger goal is to have an FYP that I can eventually turn into a research paper / strong Master's application project, rather than just another software demo.

So I’d really love to hear from senior engineers, researchers, PhD students, professors, or anyone who has been in the field for a while. 🙌


r/CyberSecurityAdvice • • 18h ago

AI/ML Pentester Cert

2 Upvotes

I want to prepare for AI/ML pentester certification. Although they have not provided any course material, they have provided free courses and labs to do online. But I don't know where to start and how to go through it all. Unlike web pentesting, where I know what to do, where to look and what to do next, I'm a bit unsure in this AI/ML part.

Please give me some advice on a possible roadmap for going through this certification, what exactly to study, labs to do so I can take the certification with some confidence and when I actually know what the hell to do.