SIEM
Security Information and Event Management
Default bootloader for most Linux systems
GRUB
rhkace
hacker
The chains associated with the iptable's Filter table
INPUT, OUTPUT, FORWARD
Default filesystem for Windows
NTFS
OSI
Open Systems Interconnection
Where all Windows configuration settings are stored
Registry
ryebtcruciesy
cybersecurity
Snort operational modes
Packet sniffing, packet logging, and intrusion detection
Bind vs Reverse shells
Bind - Listener on target machine
Reverse - Listener on attacker machine
PING
Packet INternet Groper
PID 1 in Linux
init or systemd
eaaadmtt
metadata
A network security device that keeps track and monitors the state of active network connections while analyzing incoming traffic and looking for potential traffic and data risks.
Stateful Firewall
TXT
SAML
Security Assertion Markup Language
The common system managers in Linux
SysV and Systemd
aornmawres
ransomware
an application that allows users to configure specific rules that will be enforced by the Linux kernel’s netfilter framework.
iptables
The IP packet header field used by the traceroute utility
TTL - Time-to-Live
SPF
Sender Policy Framework
Default authentication protocols in Windows Active Directory
NTLM and Kerberos
ecnonprity
encryption
components of the Wazuh SIEM
agent, server, indexer, and dashboard
Linux runlevel 3
Multi-user mode with CLI