Reposted by WiLLson ➟ 👨💻 🐍William • SOC and Detection Engineering @williamincyber.bsky.social · 27/07/2026I put together a complete CCNA in 8 Weeks roadmap and decided to make it free for everyone. If you're preparing for the CCNA or want to become a Junior Network Engineer, this guide gives you a structured path instead of guessing what to study next. 🧵 212
Reposted by WiLLson ➟ 👨💻 🐍William • SOC and Detection Engineering @williamincyber.bsky.social · 27/07/2026Day 8 Malware today, and the list looked like pure memorisation until I saw what the categories actually are 👇 131
Reposted by WiLLson ➟ 👨💻 🐍William • SOC and Detection Engineering @williamincyber.bsky.social · 28/07/2026I build vulnerable apps on purpose. It made me a better defender than any detection course did 👇 121
Reposted by WiLLson ➟ 👨💻 🐍William • SOC and Detection Engineering @williamincyber.bsky.social · 29/07/2026A home lab isn't a production SOC. I know that. That's why I'm building mine to resemble a real corporate environment as closely as possible. 🧵 131
Reposted by WiLLson ➟ 👨💻 🐍William • SOC and Detection Engineering @williamincyber.bsky.social · 04/06/2026🛡️ 28-day SOC build. In public. No filler. Every project here is a detection I wrote or an incident I walked end-to-end not a tutorial replay. 🔍 Splunk · SIEM · Log Analysis 🧠 MITRE ATT&CK · Threat Detection 💻 Kali · Ubuntu · Windows home lab 📜 ISC2 CC This is what hire-ready looks like 👇 142
WiLLson ➟ 👨💻 🐍 @themeek766.bsky.social · 13/03/2026Although simple, it reinforced the importance of basic navigation and file inspection when exploring a system. 4/ Lesson Learned: Understanding core Linux commands such as ls and cat is essential for beginners in cybersecurity and penetration testing. 5/ Tools/Commands Used: ls cat 001
WiLLson ➟ 👨💻 🐍 @themeek766.bsky.social · 13/03/2026By listing files with ls and reading the contents with cat, I was able to locate and extract the password. 3/ This challenge introduced me to the fundamentals of interacting with a Linux environment from the command line. 100
WiLLson ➟ 👨💻 🐍 @themeek766.bsky.social · 13/03/2026The objective of Level 0 was to retrieve the password stored in a file called readme. 2/ After logging into the remote system through SSH, I navigated the directory using basic Linux commands. 100
WiLLson ➟ 👨💻 🐍 @themeek766.bsky.social · 13/03/202630-Day Cybersecurity Learning Journey OverTheWire Bandit CTF Documentation (Day 1–10) 𝗧𝗵𝗿𝗲𝗮𝗱 🧵 1/ 𝗢𝘃𝗲𝗿𝗧𝗵𝗲𝗪𝗶𝗿𝗲 𝗕𝗮𝗻𝗱𝗶𝘁 – 𝗟𝗲𝘃𝗲𝗹 0 → 1 (𝗗𝗮𝘆 1) I started my cybersecurity learning journey by exploring the Bandit wargame. 110
WiLLson ➟ 👨💻 🐍 @themeek766.bsky.social · 11/03/2026It’s becoming fully comfortable in the Linux terminal while strengthening core fundamentals like: • File systems • Permissions • Networking • Command-line efficiency I’ll also document lessons learned and progress along the way. Small daily progress compounds fast. Consistency builds mastery. 110
WiLLson ➟ 👨💻 🐍 @themeek766.bsky.social · 11/03/2026𝗗𝗮𝗶𝗹𝘆 𝗖𝗧𝗙 𝗗𝗶𝘀𝗰𝗶𝗽𝗹𝗶𝗻𝗲 ~ 𝗢𝘃𝗲𝗿𝗧𝗵𝗲𝗪𝗶𝗿𝗲 𝗝𝗼𝘂𝗿𝗻𝗲𝘆 Real technical skill isn’t built in bursts. It’s built through consistency. I’ve committed to 30 minutes every day to complete one OverTheWire level until I finish the entire series. The goal isn’t just solving challenges. 100
WiLLson ➟ 👨💻 🐍 @themeek766.bsky.social · 11/03/2026🔅 Easily Find a File in Linux Looking for a specific file on your Linux system? 🧐 Use this command: find / -name "filename" This searches the entire system for your file. 🔍 000
WiLLson ➟ 👨💻 🐍 @themeek766.bsky.social · 10/03/2026𝗟𝗲𝘀𝘀𝗼𝗻: One anomalous network flow can save the company. 000
WiLLson ➟ 👨💻 🐍 @themeek766.bsky.social · 10/03/2026𝗧𝗵𝗲 𝗦𝗨𝗦𝗣𝗜𝗖𝗜𝗢𝗨𝗦 𝗡𝗲𝘁𝘄𝗼𝗿𝗸 𝗙𝗹𝗼𝘄 – 𝗗𝗲𝗰𝗲𝗺𝗯𝗲𝗿 𝟵, 𝟮𝟬𝟮𝟱 SOC network logs showed one device sending unusual traffic to a rarely used external IP. Investigation revealed malware beaconing for C2 communication. Immediate containment stopped lateral movement and prevented data theft. 110
WiLLson ➟ 👨💻 🐍 @themeek766.bsky.social · 09/03/2026Then investigated the artifacts. Lesson: ransomware is loud. SOC analysts hunt the patterns. 000
WiLLson ➟ 👨💻 🐍 @themeek766.bsky.social · 09/03/2026🚨𝗥𝗮𝗻𝘀𝗼𝗺𝘄𝗮𝗿𝗲 𝗕𝗲𝗵𝗮𝘃𝗶𝗼𝗿 𝗟𝗮𝗯 (𝗕𝗲𝗴𝗶𝗻𝗻𝗲𝗿 𝗦𝗢𝗖) Ransomware isn’t just malware. It’s patterns. In a controlled lab I simulated: • Mass file changes • AES encryption • Files renamed to .locked • A ransom note dropped 110
WiLLson ➟ 👨💻 🐍 @themeek766.bsky.social · 08/03/2026💡 Instant alert showed IP + time of access Checked Windows logs: • 4624 → login • 5140 → network share access • 5145 → file access Attack → Alert → Timeline Lesson: Even a simple decoy can teach you how SOC detection works. Next: connect logs to a SIEM and see alerts in one place. 000
WiLLson ➟ 👨💻 🐍 @themeek766.bsky.social · 08/03/2026🚨 Beginner SOC Lab: Catching Sneaky Access I built a small home lab to practice as a SOC analyst. Setup: • Windows 11 VM (victim) • Kali Linux VM (attacker) • Shared “HR” folder with a Canarytoken inside Simulated an attack: • Found the SMB share • Opened files • Triggered the Canarytoken 100
WiLLson ➟ 👨💻 🐍 @themeek766.bsky.social · 08/03/2026🐧 🐧 🐧 🐧 🐧🐧🐧🐧 🐧🐧🐧 🐧 🐧 🐧 🐧🐧🐧 🐧 🐧 🐧🐧 🐧 🐧 🐧🐧 🐧 🐧 🐧 🐧 🐧 🐧 🐧 🐧 🐧 🐧 🐧 🐧 🐧 🐧 🐧 🐧 🐧 🐧 🐧 🐧 🐧 🐧 010
WiLLson ➟ 👨💻 🐍 @themeek766.bsky.social · 07/03/20263 certifications that actually get interviews: Security+ (foundations) AZ-900 (cloud) Splunk Core Certified (hands-on SIEM) TryHackMe SAL1 Forget the rest (at least for now). 000
WiLLson ➟ 👨💻 🐍 @themeek766.bsky.social · 06/03/2026I BET YOU DONT PAY ATTENTION TO THIS LITTLE THINGS ‼️ 110
WiLLson ➟ 👨💻 🐍 @themeek766.bsky.social · 05/03/2026If a hacker gain access into your system this is what they search for first 110
WiLLson ➟ 👨💻 🐍 @themeek766.bsky.social · 05/03/2026𝗟𝗮𝘁𝗲𝗿𝗮𝗹 𝗠𝗼𝘃𝗲𝗺𝗲𝗻𝘁 & 𝗣𝗲𝗿𝘀𝗶𝘀𝘁𝗲𝗻𝗰𝗲 Lateral movement = breaking into one system, then sneaking into others using stolen creds or tools. Persistence = staying hidden with auto-start programs or fake accounts. SOC teams hunt this using logs + smart detection rules 🛡️ 000
WiLLson ➟ 👨💻 🐍 @themeek766.bsky.social · 03/03/2026Yes a lots of people are fun of doing that thinking it’s the right way 000
WiLLson ➟ 👨💻 🐍 @themeek766.bsky.social · 03/03/2026Common Mistakes Smart People Make •Reusing passwords •Over-trusting biometrics •Installing too many browser extensions •Ignoring firmware updates •Thinking antivirus = full protection Security is discipline, not tools. 121
WiLLson ➟ 👨💻 🐍 @themeek766.bsky.social · 02/03/2026The seven layers of the OSI model include: 1. The Physical layer 2. The Data Link layer 3. The Network layer 4. The Transport layer 5. The Session layer 6. The Presentation layer 6. The Application layer 010
WiLLson ➟ 👨💻 🐍 @themeek766.bsky.social · 02/03/2026Step by step, learning and practicing safely! 000
WiLLson ➟ 👨💻 🐍 @themeek766.bsky.social · 02/03/2026Then I dove into log analysis, practiced tcpdump safely, and explored system activity from a SOC perspective. Big takeaway: real OPSEC isn’t about hiding it’s about awareness, discipline, and understanding your footprint. If I can see my activity, a SOC analyst can too. 100
WiLLson ➟ 👨💻 🐍 @themeek766.bsky.social · 02/03/2026Today I finished setting up my SOC lab on Kali Linux, and what a learning experience! 🎯 I created a dedicated lab user socuser, disabled command history, turned off unnecessary services, and separated lab browsing from personal browsing. 100
WiLLson ➟ 👨💻 🐍 @themeek766.bsky.social · 02/03/2026Stop Confusing Bus, Star & Ring Topologies (Simple Guide) 020
WiLLson ➟ 👨💻 🐍 @themeek766.bsky.social · 02/03/2026No one knows the effort that went into your work more than you. Don’t wait for others to acknowledge your efforts. 011
WiLLson ➟ 👨💻 🐍 @themeek766.bsky.social · 02/03/2026Monthly Milestones Month 1 •Understand networking basics •Comfortable in Linux terminal Month 2 •50+ TryHackMe rooms completed •Security+ 50% complete Month 3 •Book Security+ exam •Build basic home lab Month 4–6 •Apply for IT/SOC roles aggressively 000
WiLLson ➟ 👨💻 🐍 @themeek766.bsky.social · 26/02/2026Package cleanup 1️⃣ apt autoremove – remove unused 2️⃣ apt clean – clear cache 3️⃣ dpkg -l – list packages 4️⃣ dpkg -r – remove package 5️⃣ apt purge – remove configs too Keep your system clean & fast. Which one would you run today? 020
WiLLson ➟ 👨💻 🐍 @themeek766.bsky.social · 26/02/2026The fastest way to stand out in IT? Become the person who documents everything you learn. New tool, new command, weird server issue? Write it down. Your notes become your superpower. Nobody remembers everything. Pros build knowledge gardens. 020
WiLLson ➟ 👨💻 🐍 @themeek766.bsky.social · 26/02/2026Nobody talks about IT audit roles. You're verifying companies follow security policies and checking compliance frameworks. Pays $60K-$80K entry level. You don't need to be as technical, just detail-oriented. Google "IT auditor" or "GRC analyst" on Indeed. 000
WiLLson ➟ 👨💻 🐍 @themeek766.bsky.social · 23/02/2026Recruiters screen for risk. Hiring managers screen for fit. Your application needs to satisfy both. 000
WiLLson ➟ 👨💻 🐍 @themeek766.bsky.social · 22/02/2026Success isn't about being the best. It's about refusing to quit. 000
WiLLson ➟ 👨💻 🐍 @themeek766.bsky.social · 22/02/2026Glint Online dashboard (news feed + real-time map) for monitoring political and economic events (including those related to cryptocurrency) around the world. glint.trade/terminal by @glintintel 000
WiLLson ➟ 👨💻 🐍 @themeek766.bsky.social · 21/02/2026Interested in Cloud? Learn AWS: aws.training/LearningLibrary aws.training Learn Cloud Computing for FREE.aws.trainingAWS training and certification 010
WiLLson ➟ 👨💻 🐍 @themeek766.bsky.social · 20/02/2026🛡️𝗕𝗲𝗴𝗶𝗻𝗻𝗲𝗿 𝗦𝗢𝗖 𝗟𝗮𝗯: 𝗔𝗽𝗮𝗰𝗵𝗲𝟮 𝗠𝗼𝗻𝗶𝘁𝗼𝗿𝗶𝗻𝗴 Installed Apache on Kali. But this wasn’t about hosting a page. It was about logs. Watched access.log in real time. Simulated 404 probing. Asked: normal… or recon? Learning to spot patterns early. SOC starts with visibility. Visibility starts with logs. 000
WiLLson ➟ 👨💻 🐍 @themeek766.bsky.social · 19/02/2026📋𝗪𝗶𝗻𝗱𝗼𝘄𝘀 𝗖𝗹𝗶𝗽𝗯𝗼𝗮𝗿𝗱 = 𝗙𝗼𝗿𝗲𝗻𝘀𝗶𝗰 𝗘𝘃𝗶𝗱𝗲𝗻𝗰𝗲 Copy. Paste. Forget? Not on Windows. With clipboard history enabled, copied data is stored in a user-linked database. Passwords. API keys. SSH commands. Apps close. Screens clear. Artifacts remain. In DFIR, even Ctrl+C can anchor a timeline. 010
WiLLson ➟ 👨💻 🐍 @themeek766.bsky.social · 16/02/2026REDDIT GOLDMINE 😀 r/cybersecurity r/netsec r/hacking r/AskNetsec r/Infosec r/ethicalhacking r/Malware r/Pentesting Don't thank me later. 010
WiLLson ➟ 👨💻 🐍 @themeek766.bsky.social · 16/02/2026I’m observing patterns daily. Security > convenience. 000
WiLLson ➟ 👨💻 🐍 @themeek766.bsky.social · 16/02/2026𝗗𝗮𝘆 13 | 𝗪𝗶𝗿𝗲𝗹𝗲𝘀𝘀 𝗡𝗲𝘁𝘄𝗼𝗿𝗸𝗶𝗻𝗴 𝗠𝗶𝗻𝗱𝘀𝗲𝘁 (𝗦𝗢𝗖 | 𝗟𝗲𝗮𝗿𝗻𝗶𝗻𝗴) Wireless doesn’t just carry signals. It introduces new attack surfaces. • Learn 802.11 standards • Compare 2.4GHz vs 5GHz frequencies • Understand channels & interference • Map wireless security risks 120
WiLLson ➟ 👨💻 🐍 @themeek766.bsky.social · 13/02/2026𝗕𝗲𝗴𝗶𝗻𝗻𝗲𝗿 𝗟𝗶𝗻𝘂𝘅 𝗦𝘆𝘀𝗮𝗱𝗺𝗶𝗻 𝗟𝗮𝗯 Built a sandbox inside my VM. Simulated users, groups, permissions with Bash. No production risk. Just controlled practice. Automated tasks. Logged activity. Versioned with Git. You don’t need real servers to build real skills. VM + structure = safe growth. 010