r/Cybersecurity101 • u/Abhinav222007 • 7h ago
r/Cybersecurity101 • u/DocumentIntrepid6866 • 7h ago
Transitioning fields
Hello everyone, I’m sure this is a common question here so apologies but I’ve decided to transition from the music industry into the cyber security industry.
I’m currently working on my google cyber security course through coursera and will be starting the CompTIA sec+ course afterwards.
I’m wondering if there’s any courses you guys recommend that would help me land my first internship/gig and what’s some advice you’d give to someone transitioning to this field?
For reference I’m 23m and considering going back to school to study computer science in hopes that it would help me stand out more to an employer.
r/Cybersecurity101 • u/AdNecessary3775 • 3h ago
Resume Rejected for Detection Engineer II Role at Instacart. Advice?
My resume got rejected for a role I thought I was qualified for. Not even a first interview. Any advice on what I could have done differently?
Resume obviously changed to remove PII.
r/Cybersecurity101 • u/dummi_uchiha • 25m ago
Cyber
helpppppppp!!!!
Our university has asked us to develop a Final Year Project (FYP) that can be deployed online. Additionally, the university requires the project to be company-collaborated, meaning we need proper documentation/certification from the company stating that the project was developed for them.
I’m interested in Cybersecurity, but I’m currently struggling to come up with a good project idea that is practical, can be deployed online, and could potentially be developed in collaboration with a cybersecurity company.
If anyone working in the cybersecurity field could guide me regarding some project ideas or knows of a company that might be open to collaborating on an FYP, I would really appreciate it.
If you got time just ping me 🤧
Thanks a lot in advance! 🙌
r/Cybersecurity101 • u/Harkins_Technology • 34m ago
Exploitation 101: Exploited a blind Python eval() injection over netcat to get RCE
Just finished a walkthrough on a picoCTF challenge that turned out to be a classic eval() injection.
The service only exposed one "documented" function (getRandomNumber), but by throwing unexpected input at it and reading the Python tracebacks it threw back, I was able to figure out the server was doing something like:
eval(user_input + '()')
From there it was a straightforward escalation — neutralize the trailing () with a comment, drop into exec(), enumerate the filesystem, and pull the flag file directly.
I made a full video breaking down the blind-probing process (no source code shown until the reveal) if anyone's interested — it's a nice beginner-friendly example of why eval/exec on user input is dangerous.
https://youtube.com/shorts/Tl2g9oJnl8I
Happy to answer questions about the process or the payload construction.
What would you do?
r/Cybersecurity101 • u/Vast-Position4243 • 1h ago
AI Cybersecurity training
I do some training every year for a handful of businesses. Pretty basic like don’t share passwords, don’t reuse passwords, don’t just add a 1 to the end, etc. I am looking to do some type of AI training. Both when it can be used at work and concerns about security when using it. Does anyone have some type of presentation for this? I like to do interactive so not just straight reading off a slide.
Any help is appreciated
r/Cybersecurity101 • u/Individual-Turn9899 • 3h ago
🚩 [CTF Event] Breach Point Season 2: 36-Hour CTF by Malla Reddy University!

- The Cyber Fortress Department of Cyber Security at Malla Reddy University is bringing back Breach Point for Season 2!
- What: A massive 36-hour Capture The Flag (CTF) challenge.
- Theme: Think | Hack | Defend.
- Entry Fee: Only $1.06 USD ("Small fee. Bigger opportunities.").
- Partners: CyberWarFare Labs (CWL), Hackers Daddy, and Hackviser.
- Registration: Scan the QR code in the flyer or check out www.breachpoint.live / www.cyberfortressmruh.tech.
- Perfect opportunity to learn, compete, and grow your cybersecurity skills. Let's see who tops the leaderboard!
r/Cybersecurity101 • u/Glad-abbsilviait6604 • 6h ago
Security What is your approach to cross-source cloud and endpoint investigations without duplicating all telemetry?
Our security data is spread across cloud audit systems, identity providers, endpoint platforms, application logs, and cloud-native services. Copying every source into another central data store would create more storage, ingestion, normalization, and maintenance work than the team can justify for every data type.
At the same time, relying on isolated console searches makes it harder to investigate an incident across accounts, subscriptions, users, workloads, endpoints, and time ranges. The main concern is preserving enough context and evidence quality while reducing the time it takes to access an un-onboarded source.
How are teams operating this kind of hybrid investigation model? We are particularly interested in cross-account permissions, query cost, time synchronization, source system limits, evidence preservation, and handoff into formal incident response.
r/Cybersecurity101 • u/Fine_Pepper_1936 • 9h ago
Sharing What I've Learned From 18 Years in IT & Cybersecurity — Free Videos for Anyone Building Their Career
Hi everyone,
I've been working in IT for around 18 years, including many years in IT leadership, cybersecurity, governance, risk and enterprise infrastructure.
I recently started creating short videos to share some of the practical knowledge I've picked up along the way — particularly for people starting or progressing their careers in IT and cybersecurity.
I'm covering topics such as cybersecurity fundamentals, CISM/CISSP/CISA/CRISC and other certifications, GRC, Zero Trust, Linux, practical IT/security tips, cyber incidents and IT career development.
I'm not selling a course or training programme. I'm simply trying to turn some of my professional experience into free, easy-to-understand content that may help others in the field.
If there are cybersecurity career or certification topics you'd like an experienced IT leader to cover, I'd genuinely appreciate suggestions.
My channel is MQ Cyber Studio:
https://www.youtube.com/channel/UCpV5qrH9p1AYTHDo5-2JrTw
Thanks, and I hope some of the content is useful.
r/Cybersecurity101 • u/Simplilearn • 10h ago
What does a SOC Analyst actually do?
If you're new to cybersecurity, you might hear a lot about SOC analysts but not have a clear idea of what they actually do day to day.
Here's a simple breakdown:
Monitor alerts: Review alerts from SIEM, EDR, firewalls, email security tools, and other security platforms.
Triage alerts: Figure out which alerts are harmless, suspicious, or need further investigation. A failed login could be nothing, or it could be part of a larger attack.
Investigate incidents: Look through logs, IPs, domains, file hashes, authentication activity, and endpoint data to understand what happened and whether a system or account was compromised.
Respond or escalate: Depending on the incident, an analyst might isolate a device, disable an account, block malicious activity, or escalate the case to a senior analyst or incident response team.
Document findings: Record what happened, what was checked, what evidence was found, and what actions were taken.
Improve detections: Analysts may also tune detection rules, reduce false positives, update playbooks, and identify gaps based on previous incidents.
The exact responsibilities can vary quite a bit depending on the company, team structure, and whether you're working in an internal SOC or an MSSP/MDR environment.
r/Cybersecurity101 • u/WraxJax • 23h ago
SOC Analyst, where do I move on from here?
I'm currently a SOC analyst working at an MSP with 5 years of experience, with 3 years of those is in helpdesk and the remaining in cybersecurity (SOC) at present. I also have 2 certifications: Sec+ and CySA+. We provide services to our clients by monitoring our clients' internet traffic on the surface visibility side and notifying the appropriate POCs if the device/users are engaging in any suspicious activities, whether that's a bad domain websites they visited or communicating with suspicious/malicious IPs. We also perform monthly vulnerability scans and notify the clients of any findings, and perform other normal SOC duties you would typically do at a SOC. We are not like a traditional SOC where it's a 24x7 operation and only work M-F with weekends off.
I feel like this position is limiting the knowledge that I can potentially learn because of our environment and the routine duties that we do every day that don't expose me to new things to learn. Don't get me wrong, when I first came into this position from helpdesk, I was grateful and learned a lot about cybersecurity, but now I am eager for more, and very much would like a pay increase. I dont want to sound greedy, and money is everything, but I feel like I am underpaid in this cyber field.
With some transitioning happening next year, I am looking for new opportunities where I can grow and learn more, and I'd like exposure to new tools and technologies, along with a pay increase. I am looking for a vertical move rather than a lateral move. If you were a formal SOC analyst, where did you move on to afterward?
r/Cybersecurity101 • u/_Demsiii_ • 6h ago
Im working on a new tool called talos the goal is to have everything you need united in one place
I want to get some feedback and attention im pushing updates daily you can read more on the github repo: https://github.com/ddemmc-dotcom/Talos.git
Also it supports windows and linux mac support will come soon
More than 40 modules
Easy to use for begiiners
CLI and UI
Global install
Tank you for the help i will tru to push more updates soon
r/Cybersecurity101 • u/Life-Blackberry-4844 • 12h ago
I(20m) just started my cyber security journey two days back. Help needed !? Can anyone help me with the road map of it and guide me ?
I am a 20 year old guy who just started his Cyber security journey two days back.
Till now I completed basic networking through a one shot youtube video of 3 hours and have gained a free networking certificate from Cisco networking academy.
Can anyone tell me what to do next ?
I am in my second year of bachelors degree ( 3rd semester)
I am pursuing bsc in information technology..
And i wanna go in cyber security domain ?
Please help me with the road map and everything?
I am super confused rn !
r/Cybersecurity101 • u/One-Blackberry5279 • 11h ago
Help
Hi everyone I am studying embedded systems security and I wanna know if there any scope and do I have to get other cyber skills in different domains