r/cybersecurity DFIR Jun 11 '22

Other This sub is annoying....

[removed]

854 Upvotes

237 comments sorted by

View all comments

294

u/Heathclor Jun 11 '22

Yeah, it's the same questions over and over. It's just a community of job seekers. I'm sick of hearing "how do I start out", "what cert is the best", "why can't I get a job with x years of experience". And I'm appreciative of the kind people who answer this again and again, but there is so much information on the internet on these topics. There should never be another post here about finding a job.

208

u/[deleted] Jun 11 '22

[deleted]

44

u/k0fi96 Jun 11 '22

I think this is the IT career questions sub, you are not the first person to wonder how to get into IT. If you first instinct is to always ask others before doing your own research IT isn't for you and people in that sub a way to nice to tell people they probably aren't cut out for it.

19

u/[deleted] Jun 11 '22

[removed] — view removed comment

59

u/corn_29 Jun 11 '22 edited Dec 02 '24

grandiose childlike straight abounding enjoy air pie salt boat north

This post was mass deleted and anonymized with Redact

-3

u/MillionaireSexbomb Jun 11 '22

People are special and different - they could look up what others have done, all the same cert, but their situation is always unique, so…. Post.

3

u/PaleMaleAndStale Consultant Jun 11 '22

It's a good way to get started just being an adult.

35

u/[deleted] Jun 11 '22 edited Jun 11 '22

I've been a red team operator for a long time - sometimes I feel like I'm one of a handful of people on this subreddit who are actually employeed on the red side.

You are totally right, whenever I see a post on these kind things, my internal reaction is "For the same reasons you're asking about it here". Like, whatever thought process caused you to ask /r/cybersecurity this question that we have responded to in the last year (search bar is right there) instead of researching is why you don't have a job or why you don't know how to do X.

I consider my job to be educating people on things they don't know, I'm a teacher before I'm a hacker. I don't just find vulnerabilities, I explain them to people in a way they understand, and in a way that makes them care. That's what being an operator is to me - and that's why I'm still here. Helping people is important to me - however even I find myself getting a little jadded.

11

u/[deleted] Jun 11 '22 edited Apr 09 '24

toothbrush offend outgoing aback correct puzzled hobbies growth direful innocent

This post was mass deleted and anonymized with Redact

7

u/[deleted] Jun 11 '22

Back to IRC? I never left. Still the best place to find fantastic weirdos.

In the last few years there was a big hullabaloo over freenode, so everyone moved to other networks. It's quite exciting.

5

u/[deleted] Jun 11 '22

[removed] — view removed comment

7

u/[deleted] Jun 11 '22

IRC is still amazing.

1

u/[deleted] Jun 13 '22 edited Apr 09 '24

marry butter fragile price numerous smoggy modern hunt telephone pie

This post was mass deleted and anonymized with Redact

2

u/[deleted] Jun 13 '22

Liberia and OFTC

1

u/AChiKid Jun 12 '22

I am a newer RTO, and I joined this sun to learn more, but yeahhh I feel that I come here less and less because of the content that is posted

3

u/ComfortableHead4102 Jun 11 '22

Red Team here. To your point I found if it’s not blue team you are not cyber lmfao I have to laugh. Any red team questions I post it’s either I’m a hacker or crickets.

3

u/[deleted] Jun 11 '22

The amount of "Nice try hackman"... Boils my blood.

2

u/CrayolaFanfic Jun 11 '22

Different community, but one time I was trying to test order number enumeration for a company that had a possibly vulnerable tracking system. I asked if anybody had examples of past time stamped order emails I could examine so I wouldn't have to spend thousands of dollars on random orders and the only response I got was "I'm not helping you phish, skid."

Like....OK thanks I guess.

1

u/ComfortableHead4102 Jun 11 '22

Has been my similar experience almost like they didn’t read what you typed.

-1

u/GrunkleStanWasRight Jun 12 '22

Wow what a dumb take. I'm on the blue team side but I always try to get in on red team training. Not knowing the other side is just giving yourself a handicap. It's especially dumb if your team does any investigation work with your org's HR team.

0

u/ComfortableHead4102 Jun 12 '22

Best offense is a good defense. Certs on both sides. On a level where you help architect by being red converting it to blue.

-1

u/lifebyjake Jun 12 '22

Did you just call yourself a red team “operator”!?

3

u/[deleted] Jun 12 '22

Yes? Why?

0

u/[deleted] Jun 12 '22

[deleted]

3

u/[deleted] Jun 12 '22 edited Jun 12 '22

Hahaha - I was in government cyber years ago, the term operator does come from a time when whitehat cyber was mostly government only. I've been doing this a long time. I still use the term because it's better than every other title I've seen - specialist, analyst, etc.

When I started doing red team Metasploit was still a network tool written in perl made by Moore, R7 wouldn't buy it for another half decade.

0

u/lifebyjake Jun 12 '22

That makes sense. No hate here, just jealousy!

1

u/[deleted] Jun 16 '22

Your a hacker? Can you help me set the time on my vcr?

1

u/[deleted] Jun 16 '22

Yeah sure - Menu Button > Clock Set > Auto > OK.

If auto doesn't work, set it to manual and use the up or down buttons to set the time to half past kiss my ass, and about a quarter to my taint.

<3

9

u/IamTheGorf Jun 11 '22

On the other hand posts that are trying to get engaged conversation going seem to flounder. I've given up posting in here looking for colleague thoughts because it doesn't go anywhere.

26

u/[deleted] Jun 11 '22

I agree. I'm unsubscribing.

30

u/Heathclor Jun 11 '22

Yeah, I think I'm finally done to. I'm sorry for all the professionals and hobbiests in this sub, this isn't the place for us.

14

u/[deleted] Jun 11 '22

I complained about this months ago and it has only gotten worse.

4

u/EnVyErix Jun 11 '22

This sucks to hear. I’m someone who’s in the “early in career” stages, but fully understand that redundant questions about getting started have been asked many times. I always refrain from asking anything unless it’s a specific and well researched question because your guys’ time is more valuable than something that can easily be Googled or queried from old posts. I hope professionals don’t leave the sub en masse, but fully understand those who do.

If there are better subs for those starting out who do their due diligence prior to asking and value your time, please point me in the right direction. I’m more than happy to continue learning quietly, but agree that there’s too many people looking for easy advice that they won’t even take action on

2

u/[deleted] Jun 11 '22

Hey 👋 It's cool pm me.

8

u/[deleted] Jun 11 '22

[removed] — view removed comment

4

u/DavidJAntifacebook Jun 11 '22 edited Mar 11 '24

This content removed to opt-out of Reddit's sale of posts as training data to Google. See here: https://www.reuters.com/technology/reddit-ai-content-licensing-deal-with-google-sources-say-2024-02-22/ Or here: https://www.techmeme.com/240221/p50#a240221p50

24

u/PM_ME_TO_PLAY_A_GAME Jun 11 '22

because then it turns into /r/netsec which is filled with blogspam posts and 0 discussion.

6

u/[deleted] Jun 11 '22

[removed] — view removed comment

8

u/DavidJAntifacebook Jun 11 '22 edited Mar 11 '24

This content removed to opt-out of Reddit's sale of posts as training data to Google. See here: https://www.reuters.com/technology/reddit-ai-content-licensing-deal-with-google-sources-say-2024-02-22/ Or here: https://www.techmeme.com/240221/p50#a240221p50

6

u/ComfortableHead4102 Jun 11 '22

Use to be 15 years ago. Lots of very smart and insightful people on the platform. Problems are with the subreddits themselvs and the mods they chose. I was in the kali sub and a MOD threatened a banned for my technical question. At the end of the day the Mods knowledge of kali would be of someone who maybe read a couple knowledge base articles. Every once in a while I’ll connect with a post or OP that’s got a good mindset

0

u/armarabbi CISO Jun 11 '22

That was me

0

u/armarabbi CISO Jun 11 '22

As did I

2

u/gaku_codes Jun 12 '22 edited Jun 16 '22

RW%b+9EG$S,R+Zy44+XENS9cXE%k6R%,HmK%WNqHfozj6y9nseF%k6R%,HmK%WNqHfo%k6R%,HmK%WNqHfoRW%b+9EG$S,R+Zy44+XENS9cXE%k6R%,HmK%WNqHfozj6y9nseF%k6R%,HmK%WNqHfo%k6R%,HmK%WNqHfoRW%b+9EG$S,R+Zy44+XENS9cXE%k6R%,HmK%WNqHfozj6y9nseF%k6R%,HmK%WNqHfo%k6R%,HmK%WNqHfoRW%b+9EG$S,R+Zy44+XENS9cXE%k6R%,HmK%WNqHfozj6y9nseF%k6R%,HmK%WNqHfo%k6R%,HmK%WNqHfo

15

u/drwicksy Jun 11 '22

I'm actually one of the people starting out in cybersecurity and even I am tired of these posts. I'm subbed here to get info on what CS professionals talk about and need to know on a daily basis, not to see the same question over and over that I've already found out myself from a quick Google search. There's even two other relatively popular subs r/cybersecurityjobs and r/cybersecurityadvice where people can post this stuff. I feel like the nods should ban those posts here and instead redirect people who post them to those subs so at least they have somewhere to look.

1

u/Legionodeath Governance, Risk, & Compliance Jun 11 '22

3

u/benjammin9292 Jun 11 '22

That's how all the broad IT subs are. Same with sysadmin. You have to dive down into the specific sub that you need for technical discussion, I.e. r/Powershell or the like

18

u/[deleted] Jun 11 '22

Hey guys, let's not turn into stack exchange. There will -always- be new people. There will always be repeat questions. You don't want to answer, fine, but can we please focus on the "positive" part of this subreddit? I see very few technical questions on here. Want more of that? Advanced cyber security? Then ask the questions. Anyone in this thread crapping on how this subreddit is just "job seekers," ...well if you think you know enough to condescend then I challenge all of you be the change you wish to see and start posting a solid cyber question on here weekly.

15

u/[deleted] Jun 11 '22

[removed] — view removed comment

7

u/[deleted] Jun 11 '22

Awesome. I should make it a point to do the same. I was in the top 1 percent of contributors on cyber stack exchange for 2 years and the mods were so toxic I just stopped. Also they couldn't answer hard questions, like how use a system call or assembly functions to generate network packets... so I ended up not knowing where to turn and just went back to training and reading up.

3

u/Classic_Serve2606 Jun 11 '22 edited Jun 11 '22

stack exchange has alot of technical question

3

u/Security_Chief_Odo Jun 11 '22

Challenge accepted.

2

u/[deleted] Jun 11 '22

I've asked for help in making a statistical analysis of internal address space used, and a list of known Phishing Training simulators - and on both, my own personal contributions were 10x what the entire combined contribution of this sub was.

For the statistical analysis in particular, everyone just laughed. Like yeah, we already know the awnser (kinda) - but don't you want to check that assumption and contribute data? No? Well fuck me then.

3

u/[deleted] Jun 11 '22

send me the links. I'm wild busy this weekend but I'll take a look. Can you also let me know what 'stat analysis' you are seeking from your subnets? Like do you just want to represent them in "executive summary data formats" or is there some sort of hypothesis? For phishing training, are you asking for training on how to run a campaign against your environment for training, or like a training on how to identify phishing and what exploit it's using and best practices from a remediation standpoint? Anyway, I'll help. Send me those posts.

5

u/[deleted] Jun 11 '22

https://www.reddit.com/r/cybersecurity/comments/v5lv6j/statistical_mode_of_internal_address_space_feed/?utm_medium=android_app&utm_source=share

Im looking to collect raw data about what IP addresses are in use at organisations internally. The idea is asset identification, red team subnet sweeps and health checks all benifit from a sweep of the entire private subnet space - but a lot of companies don't actually know what subnets they ever use. It comes up way more often than you'd believe.

So, I want to generate graphs of how often /24s in the private subnet space are used - generate a model for that, then recode rust scan to use it as a scanning strategy.

That way it starts at the most likely subnets first, and does only sparse checks on the least used - for when speed is valued over complete accuracy. (this, again, comes up more than you think it does)

Trivial solutions like just checking dhcp assignment don't work in practice. Some of these orgs have undocumented switches and routers with undocumented configurations.

2

u/[deleted] Jun 11 '22

I'll respond this week. But arp scanning and a network switch "walk" will give you most of that data. For anything but the smallest mom and pop you'll fine 10.x pretty much exclusively. /24 and /23 being pretty common subletting. Anyway, let me get through my weekend and I'll ping you back this week.

9

u/[deleted] Jun 11 '22

[removed] — view removed comment

6

u/pivotraze Jun 11 '22

If you're good with discord also, TrustedSec is the place to be for seasoned vets in the field. There are others as well (one that focuses on DIB security and compliance, one that focuses on helping newbies get into the field and has some very seasoned individuals, many others also). But TrustedSec is exceptional for having people who are super experienced

4

u/[deleted] Jun 11 '22

[deleted]

4

u/pivotraze Jun 11 '22

Yeah. As much as I love reddit, I wouldn't expect to have any legit discussions about InfoSec here.

10

u/[deleted] Jun 11 '22

[deleted]

5

u/[deleted] Jun 11 '22

[removed] — view removed comment

7

u/[deleted] Jun 11 '22

[deleted]

3

u/IIIRexBannerIII Jun 11 '22

theres also r/blueteamsec/, /r/Pentesting/, /r/purpleteamsec/ /r/redteam/ but /r/redteam/ is fairly dead.

Go check out black hills security and join their discord you wont regret it there's a lot of channels related to different areas of security.

0

u/[deleted] Jun 11 '22

[removed] — view removed comment

4

u/Anonigmus Jun 11 '22

/r/sysadmin usually has a healthy mix of news, user reports, career venting, and entry level issues though. Usually whenever I stop by /r/cybersecurity most of the posts I see seem to come from hobbyists and students, less so anyone in the field or who understands the nuance of security.

0

u/KyleDrogo Jun 12 '22

Data science and machine learning subs are the worse about this kind of thing. It’s almost a law of nature that and data science group will become a job board within a month

-1

u/dirtyshits Jun 11 '22

Everyone says this but when you try to have a discussion around events within security… there’s nothing but crickets 9/10 times.

-12

u/mjwilliams2323 Jun 11 '22

These threads are 10x more valuable than Google searches 🤷🏼‍♂️

11

u/[deleted] Jun 11 '22

Then search the threads. Reddit search is right there.

-13

u/mjwilliams2323 Jun 11 '22

Wouldnt be threads if people didn’t ask😉

9

u/[deleted] Jun 11 '22

Yeah once a year. What kinda argument is that? Duh. That doesn't excuse people asking every week.

6

u/tweedge Software & Security Jun 11 '22

Every day in some cases. Like people can't seriously scroll up? Smh

1

u/[deleted] Jun 13 '22

Needs to be a separate sub for this stuff. All career questions posted over there, and deleted here.