Harmanpreet Singh

103 posts

Harmanpreet Singh banner
Harmanpreet Singh

Harmanpreet Singh

@Harman_17s

student → engineer in progress ⚡ cloud | security | code documenting the grind

India Katılım Mayıs 2025
51 Takip Edilen45 Takipçiler
Segun
Segun@sudosheggs·
On THM, built a python script to automate bruteforce testing with rotating IPs/headers to bypass weak protections. Then exploited a poorly implemented JWT to escalate privileges, gained admin access to the dashboard, and achieved full RCE. @ireteeh @_DeejustDee @TemitopeSobulo
Segun tweet mediaSegun tweet mediaSegun tweet mediaSegun tweet media
Segun@sudosheggs

I may be back in and out, let's see how it goes. So today I just completed; -OAuth Vulnerabilities -Multi-Factor Authentication @ireteeh @_DeejustDee @TemitopeSobulo @segoslavia

English
6
3
37
2.8K
XXIII
XXIII@Maskoff023·
Spent months feeling genuinely stupid. People around me were casually talking about exploits, malware analysis, and buffer overflows like it was beginner stuff. Meanwhile I was still trying to understand what an IP address even does. Almost quit multiple times. Then someone told me: “Confusion isn’t proof you’re failing. It’s proof you’re learning something new.” That sentence changed everything. Stay confused. Just don’t stop showing up.
English
3
3
16
336
XXIII
XXIII@Maskoff023·
The cybersecurity Twitter[X] you see: "just passed my OSCP after 90 days " "built my first home lab this weekend" "landed a SOC role with no degree" the cybersecurity Twitter[X] you need: someone at 1am forgetting the difference between TCP and UDP again. someone scared their laptop is too old. someone who hasn't opened their course in 11 days and feels guilty about it. you're not behind. you're just not seeing the real timeline.
English
3
4
28
510
Victor
Victor@rootuser24·
Completed the ShadowTrace room on TryHackMe today. I analyzed a suspicious binary called windows-update.exe using PEStudio. During the analysis, I was able to extract: 1) The binary’s architecture and SHA-256 hash from the PE header. 2) A command-and-control (C2) URL stored in the binary strings, which served as an IOC. 3) A suspicious domain (responses.tryhatme.com), identified as another IOC. 4) A hidden flag by decoding the encoded strings using CyberChef. 5) The imported socket library WS2_32.dll, confirming the malware’s network communication capability. Then I also moved moved into alert triage using an EDR dashboard. I investigated critical alerts triggered by powershell.exe and chrome.exe. I was able to decode obfuscated strings from the executed commands, identified malicious URLs, and determined the file that was downloaded during the attack. tryhackme.com/room/shadowtra… @ireteeh @segoslavia @commando_skiipz @RedHatPentester @TemitopeSobulo @tryhackme @_DeejustDee @cyberjeremiah #BlueTeamer #tryhackme #Cybersecurity #LearninginPublic
Victor tweet mediaVictor tweet mediaVictor tweet mediaVictor tweet media
Victor@rootuser24

Yesterday I rested and revised everything I covered during the previous week. Today on TryHackMe, I completed the Living Off the Land Attacks room. I learnt that Living Off the Land (LOL) attacks are techniques where threat actors abuse legitimate tools already built into the operating system to perform malicious actions and avoid detection. I explored how tools like PowerShell, WMIC, Certutil, Mshta, Rundll32, and Scheduled Tasks can be abused for execution, persistence, and evasion, and how these activities can be detected. I also completed an exercise where I classified different alerts to distinguish malicious activity from normal system behavior. tryhackme.com/room/livingoff… @ireteeh @segoslavia @commando_skiipz @RedHatPentester @TemitopeSobulo @tryhackme @_DeejustDee @cyberjeremiah #BlueTeamer #tryhackme #Cybersecurity #LearninginPublic

English
2
2
11
793
Harmanpreet Singh
Harmanpreet Singh@Harman_17s·
@ArtemPolynko Want to go into DevSecOps but it is not a fresher role. It will be my target after an initial SOC position💪
English
0
0
1
120
Artem Polynko
Artem Polynko@ArtemPolynko·
What role are you currently aiming for in cybersecurity? SOC GRC Cloud Security IAM Pentesting Other?
English
89
13
196
12.3K
Jfash🛡
Jfash🛡@Jfash_hax·
Another day on cybersecurity, friends. I started with cisco as usual, then I proceeded to have some hands-on experience with shodan and recon-ng which are passive reconnaissance tools. I had worked on them before, but today, I went even deeper. Building gradually.
Jfash🛡 tweet mediaJfash🛡 tweet mediaJfash🛡 tweet mediaJfash🛡 tweet media
English
3
2
12
319
Rodiyyah 💜
Rodiyyah 💜@AdeagboRodiyyah·
Day 11 of #80DaysOfCode 💜👑 ✅ Started with a simple number guessing game ✨ Added difficulty levels (range + attempt limits) ✨ Designing a dynamic hint system ✨ Shifted from basic scripting to system design thinking #girlengr #Python #Rodiyyahwrites
Rodiyyah 💜 tweet mediaRodiyyah 💜 tweet media
Rodiyyah 💜@AdeagboRodiyyah

day 10 of #80DaysOfCode ✨ First Tkinter interface. 🤭 ✨ pink background. purple text. Hello World. 🌸 built on my phone. ✨ Learnt about labels, buttons and entry widget ✨ and I had to experiment with what I had learnt. 🥹🔥 #Rodiyyahwrites #Python #WomenInTech #girlengr

English
4
1
15
278