SamTheRam
banner
samcursive.bsky.social
SamTheRam
@samcursive.bsky.social
To run a simulated "Basic Serviceability Check."

Make sure that your @docker.com #Docker Containerized Server(s) are running. I spent 15 mins trying to run the #ContainerizedAttack server when I FORGOT the #ContainerizedVictim Server wasn't even online...

Cybersec is fun when well rested.
June 22, 2025 at 12:43 AM
Gosh do I love #bash scripting. Today I learnt how to log events pertaining to a file and ventured into #vim territory.

#vim is demanding but cool.
#Linux rocks.
June 12, 2025 at 3:50 AM
That's it for now, all I knew about Email Forensic Analysis. Tune back in for more next weeeeek!

#Cybersecurity #CybersecurityStudent #Wireshark #macOS #LinuxVM #EmailForensicAnalysis #Network-LevelEmailForensics
June 10, 2025 at 2:30 AM
jsyk,
smtp.data.fragment - atomic pieces
smtp.data.fragments - the whole puzzle
smtp.data.fragment.count - count of atomic pieces.

It took me a minute to understand the differences b/w these. The documentation available on these is sparse & varied...
June 10, 2025 at 2:27 AM
Part 4: What to do if the packets are fragmented

Thankfully, wireshark helps piece that fragmented smtp puzzle.

1. In the display filter, type

`smtp.data.fragment` - individual puzzle piece
OR
`smtp.data.fragments` - the whole puzzle

2. Manually scan the filtered list for the complete one.

〰️🦈
June 10, 2025 at 2:24 AM
Part 3: Identifying the phishing emails

What I've learnt about #SocialEngineering seeks to undermine chinks in human psyche. It's successful as long as we're NOT careful

- Poor Grammar & spelling
- Deceptive URLs
- Urgent Call to Action
- Intimidating Language
- Attachments
- Irresistable Offers
June 10, 2025 at 2:16 AM
Part 2: Wireshark's Display Filter

**Learning to use to the display filter in Wireshark is important for anyone going into Cybersecurity/Networking/IT Systems.**

1. Since it's phishing BEC's I'm trying to find filter by SMTP (literally type in 'smtp' in the display filter).

#BEC's #CyberSecurity
June 10, 2025 at 2:03 AM
Part 1: Obtaining the infected .pcaps from @codepathorg.bsky.social.

1. Download the files to your machine (don't recommend it on windows unless you have a VM running.)
2. I used my MAC (honestly anything Linux or VM works)

(For futher exercises look into www.malware-traffic-analysis.net)
malware-traffic-analysis.net
A site for sharing packet capture (pcap) files and malware samples.
www.malware-traffic-analysis.net
June 10, 2025 at 2:00 AM
Spending 8 hours learning how to identify #phishing emails using @wireshark.bsky.social, filerting packets 📦 based on SMTP was a humbling experience...

Further posts will detail my learning process :3
June 10, 2025 at 1:44 AM
Reposted by SamTheRam
Mary Oliver never misses.
January 23, 2025 at 4:25 PM
Reposted by SamTheRam
I wrote this on one of the darkest days of my life. It gave me an anchor to hold onto.
January 24, 2025 at 2:57 PM
Reposted by SamTheRam
This poem made me stop in my tracks.
January 26, 2025 at 11:25 PM