j3rmcyber
Reconnaissance Reporter
Level 17 45931 / 51853
*Rankings computed based on core modules (45924 pts).
Joined in April, 2024
j3rmcyber earned 11 badges
Valdorian Times
This analyst investigated an email phishing attack in Valdoria that uncovered a politically motivated influence campaign. Using Kusto Query Language (KQL), they analyzed employee roles, email communications, and computer process events, revealing evidence of data exfiltration and manipulation. This exercise reinforced skill in querying data and understanding data integrity within a cybersecurity context.
Issued on: May 02, 2024
Rap Beef
This analyst investigated a themed scenario involving rival hip-hop artists. They used key cybersecurity skills to identify suspicious communications and activities, analyzing internal messages to track unauthorized exchanges and uncover patterns. This exercise reinforced critical skills in data analysis, threat detection, and the application of cybersecurity principles in unconventional contexts.
Issued on: May 08, 2024
Balloons Over Iowa
This analyst completed the "Balloons Over Iowa" module, investigating a phishing and ransomware attack. They identified command and control connections, detected data exfiltration, analyzed Mimikatz activity, and observed shadow copy deletions, demonstrating their ability to effectively respond to and analyze cyber threats.
Issued on: May 08, 2024
Castle & Sand
This analyst investigated an easy-level ransomware scenario by identifying adversaries' reconnaissance activities, analyzing themed phishing emails, and tracking ransomware deployment and impact. They used the Kusto Query Language (KQL) to analyze intrusion data and build an understanding of the ransomware attack lifecycle.
Issued on: May 22, 2024
Envolve Labs
This analyst completed the "Envolve Labs" module. They demonstrated skills in using Kusto Query Language (KQL) in their investigation that included identifying phishing campaigns, analyzing command-line activities, and uncovering credential theft and data exfiltration. They also learned to cluster and attribute attacks to specific threat actors, connecting malicious domains and email addresses to threat actor behavior.
Issued on: Jun 23, 2024
Jojo's Hospital
This analyst completed the JoJo's Hospital module, investigating a cyber attack involving an Initial Access Broker and a Ransomware-as-a-Service (RaaS) operation. They demonstrated skills in detecting phishing and malvertising tactics, tracing unauthorized network access, understanding hacker collaboration, and analyzing ransomware activities.
Issued on: Jun 26, 2024
30 day hot steak
Awarded to a user who has answered a question for 30 days in a row.
Issued on: Jun 26, 2024
60 day streak
Awarded to a user who has answered a question for 60 days in a row.
Issued on: Jun 26, 2024
Solvi Systems
This analyst investigated a cybersecurity incident at Solvi Systems by identifying an attempted XSS attack and tracking a phishing email campaign. Using Kusto Query Language (KQL), they uncovered the threat actorβs reconnaissance efforts, system compromises, and malware activities, providing critical insights for enhancing security measures.
Issued on: Jul 17, 2024
Krusty Krab
This analyst completed the "Krusty Krab" module, investigating a phishing attack and data exfiltration. They used Kusto Query Language (KQL) to analyze email and network logs, revealing the use of deceptive email addresses and malicious domains. This exercise emphasized their ability to pivot and connect malicious domains to threat actor behavior, showcasing their proficiency in threat detection and analysis.
Issued on: Jul 28, 2024
j3rmcyber played 13 games
Balloons Over Iowa 4405/4405
Envolve Labs: With a twist! 950/950
KRUSTY KRAB 7360/7360
Dai Wok Foods 0/11600
Castle & Sand 13050/13050
DAILY7 ππ 679/4028
A Scandal in Valdoria π 2430/2430
Solvi Systems 2860/2860
AzureCrest - The full version 8020/8790
A Rap Beef (START HERE) 950/950
Jojo's Hospital 610/610
Titan Shield (with Microsoft Defender XDR) 4000/4000
Frognado in Valdoria 610/1690
Issue Badge to j3rmcyber
# | Image | Badge | Description | Action |
---|---|---|---|---|
1 | Advanced Persistent Analyst | Someone who failed, got up, and tried again! | ||
2 | Helping Hand | This award is community-nominated! Someone in the KC7 community has recognized this user for their contributions to others! | ||
3 | Notre Dame Challenge | Completed the cybersecurity challenge event at Notre Dame in June 2023 | ||
4 | KC7 Top 10 (2023) | Awarded to top 10 KC7 players in 2023 | ||
5 | Cyber Challenge Series: Team Winner | This badge is issued to KC7 players who were members of a team that placed top 3 in a Blue Team Cyber Challenge event! | ||
6 | Super Fan | This badge is issued to any KC7 player who has completed 3 modules or more! | ||
7 | Most Improved | Someone who really improved over the course of a KC7 event! | ||
8 | Cyber Challenge Series: Winner | This badge is issued to KC7 players who placed top 3 (as an individual) in an Blue Team Cyber Challenge event! | ||
9 | Inside Encryptodera - Event Participant | Participant in the February 2024 monthly event featuring the Encryptodera module | ||
10 | The Teacher | Someone who really helped lift up their peers and enabled others to learn! | ||
11 | Bright Future | Someone who shows a lot of potential as a future cyber analyst! | ||
12 | Azure Crest | This analyst investigated a ransomware attack, where cost-cutting measures led to a single point of failure in their systems. This exercise highlighted the risks associated with prioritizing cost over security and reinforced skills in identifying vulnerabilities and understanding the broader implications of inadequate security measures in a healthcare context. | ||
13 | 2024 SANS New2Cyber CTF Participant | This badge has been awarded to those who took part in the 2024 SANS New2Cyber x KC7 Capture The Flag (CTF) challenge, which involved investigating a ransomware attack on a hospital. | ||
14 | 120 day streak | Awarded to a user who has answered a question for 120 days in a row! | ||
15 | Intro Master |