Cybersecurity SOC Analyst Lab - Email Analysis (Phishing)

Поделиться
HTML-код
  • Опубликовано: 5 янв 2025

Комментарии • 137

  • @abhishekhavanur9859
    @abhishekhavanur9859 7 месяцев назад +9

    bro As a SOC analyst i have never seen such a good email analysis video in RUclips, great job and thanks for this video

    • @MyDFIR
      @MyDFIR  7 месяцев назад

      I appreciate that! Thank you

  • @aliibrahim5479
    @aliibrahim5479 8 месяцев назад +20

    Gonna save this and watch it later , this content can’t be found anywhere on RUclips honestly , all either outdated or not explained properly but your videos are quality it feels like we got what we paid for except it’s free 😍

    • @iVibeBruh
      @iVibeBruh 8 месяцев назад +1

      Right this is amazing. Doing the same

    • @MyDFIR
      @MyDFIR  8 месяцев назад +5

      Haha love it! We do things DFIRINTLY here 👀👀

  • @sebasguty22
    @sebasguty22 8 месяцев назад +8

    Holy crap dude, I thought I was doing phishing analysis on my job, great job! Continue this way!

    • @MyDFIR
      @MyDFIR  8 месяцев назад

      Thanks for watching!

  • @Andydaniel-pl7kh
    @Andydaniel-pl7kh Час назад

    Pure art, thanks for sharing, you got a new member.

  • @thefrub
    @thefrub 8 месяцев назад +3

    I can already tell this is a great video, I wish I'd watched this before doing my CySA last month.
    How has SANS not hired this guy yet??

    • @MyDFIR
      @MyDFIR  8 месяцев назад +2

      Haha thank you for the kind words! That would be quite incredible…SANS instructor 👀👀

  • @Cyber.Panda.
    @Cyber.Panda. 8 месяцев назад +3

    My number one Cyber Instructor!! 🔥🔥🔥

    • @MyDFIR
      @MyDFIR  8 месяцев назад

      ❤️ thanks for watching!

  • @CyberSynAck
    @CyberSynAck 8 месяцев назад +4

    Wow cant thank you enough for these labs!
    Keep up the amazing work.

    • @MyDFIR
      @MyDFIR  8 месяцев назад

      Thank you for watching! 🙌

  • @deanhaycox
    @deanhaycox 8 месяцев назад +1

    This was another wicked tutorial, thanks for everything you do.
    Can’t wait for the course, been waiting for a good practical course

    • @MyDFIR
      @MyDFIR  8 месяцев назад

      Thanks for watching ❤️ Course is coming soon!

  • @savagesurf2768
    @savagesurf2768 8 месяцев назад

    your videos are a God-send to aspiring SOC analysts just applied to my first few junior SOC analysts positions thanks to you

    • @MyDFIR
      @MyDFIR  8 месяцев назад

      Great to hear! Best of luck 🙌

  • @ZeNex74
    @ZeNex74 8 месяцев назад

    Passed the sec+ now onto btl1.. this will help. Thanks for the inspiration

    • @MyDFIR
      @MyDFIR  8 месяцев назад

      Congratulations! Time to level up those hands on skills 💪

  • @xbsdbsdbx
    @xbsdbsdbx 8 месяцев назад

    With content like this it's no wonder your channel has grown so much so quickly. Can't wait to learn more about your course.

    • @MyDFIR
      @MyDFIR  8 месяцев назад +1

      I appreciate that!

  • @Joe-nd1mi
    @Joe-nd1mi 8 месяцев назад

    Another excellent presentation. Great tips and explanation analyzing a phishing email. Thank you for the guidance you provide it is defiantly appreciated!

    • @MyDFIR
      @MyDFIR  8 месяцев назад

      My pleasure! Thanks for watching ❤️

  • @whoami-ty1kp
    @whoami-ty1kp 8 месяцев назад +1

    this is amazing man. I always love your content. Keep Going.

    • @MyDFIR
      @MyDFIR  8 месяцев назад +1

      Thanks!

  • @BrayaanRayan
    @BrayaanRayan 6 месяцев назад

    Those labs activities are amazing!

    • @MyDFIR
      @MyDFIR  6 месяцев назад

      Yeah! They are super fun and educational

  • @Biggad14412
    @Biggad14412 5 месяцев назад

    The One we didnt know we needed... FIRE content

    • @MyDFIR
      @MyDFIR  5 месяцев назад

      Much love ❤️ I appreciate you!

    • @Biggad14412
      @Biggad14412 5 месяцев назад

      Im having the hardest time trying to find the attachment file names but im not quitting

  • @Just_A_Tech.._
    @Just_A_Tech.._ 8 месяцев назад

    Simply awesome,👌❣Your content is always different from the rest. Keep them coming sir.🤝

    • @MyDFIR
      @MyDFIR  8 месяцев назад

      Will do! Thanks for watching ❤️

  • @CyberDreams11
    @CyberDreams11 8 месяцев назад

    Solid material, and I'm definitely looking forward to your course

    • @MyDFIR
      @MyDFIR  8 месяцев назад

      Awesome, thank you!

  • @Benrosan
    @Benrosan 8 месяцев назад

    Fantastic walkthrough, as usual.

    • @MyDFIR
      @MyDFIR  8 месяцев назад

      Glad you enjoyed it ❤️

  • @crave4gems
    @crave4gems 8 месяцев назад

    Valuable Presentation. Thanks for sharing mate

    • @MyDFIR
      @MyDFIR  8 месяцев назад +1

      Glad you enjoyed it!

  • @ronaldtimm467
    @ronaldtimm467 7 месяцев назад

    Whow! And that one was an easy one?
    Great explanation!

    • @MyDFIR
      @MyDFIR  7 месяцев назад

      Thanks!

  • @diegomed3364
    @diegomed3364 2 месяца назад

    Your course is wanderfull.

    • @MyDFIR
      @MyDFIR  2 месяца назад

      Thank you! Super happy to hear that 😁

  • @tumelomathe2444
    @tumelomathe2444 5 месяцев назад

    I love your content, may you kindly do more content

    • @MyDFIR
      @MyDFIR  5 месяцев назад

      Thank you!

  • @senditall152
    @senditall152 16 дней назад

    ohh damn!
    This is quite cool I also learened a lot of new stuff.

    • @MyDFIR
      @MyDFIR  15 дней назад

      Glad to hear it!

  • @chamaragunasena6437
    @chamaragunasena6437 8 месяцев назад +1

    Hey ! this is awesome can you do more videos like this 👌👌👌👌👌😍😍😍😍

    • @MyDFIR
      @MyDFIR  8 месяцев назад

      Sure 😊

  • @naturbenefit
    @naturbenefit 3 месяца назад

    very detailed if i may ask are these tools the tools used for email analysis or there other tools that can be used

  • @silverwraith-r7o
    @silverwraith-r7o 7 месяцев назад

    Ty for doing a updated version of:)

  • @93ksj
    @93ksj 8 месяцев назад

    Grind never stops 🤝

    • @MyDFIR
      @MyDFIR  8 месяцев назад +1

      You know it!

  • @timcyb
    @timcyb 4 месяца назад

    well-explained. Thanks for the video

    • @MyDFIR
      @MyDFIR  4 месяца назад +1

      Glad it was helpful!

  • @gina72725
    @gina72725 5 месяцев назад

    Wow! Wonderful. Thank you

    • @MyDFIR
      @MyDFIR  5 месяцев назад

      My pleasure, thanks for watching ❤️

  • @rsleepy255
    @rsleepy255 8 месяцев назад +1

    How do you make the text yellow and show the keywords on Notepad++?

    • @MyDFIR
      @MyDFIR  8 месяцев назад +1

      You could use different “languages” in notepad++ to help with this

  • @mapletech_22
    @mapletech_22 8 месяцев назад +1

    This is great ❤❤❤

    • @MyDFIR
      @MyDFIR  8 месяцев назад

      Thanks ❤️

  • @TsotneKverselava-dt1jn
    @TsotneKverselava-dt1jn 15 дней назад

    hello. where from I can download phishing emails samples for practice?

  • @vasanthakumar525
    @vasanthakumar525 3 месяца назад

    Hi!
    In The phishing analysis 2 couldn't find the last 3 answers
    I tried but I couldn't. Can I get any help from your side? Especially in finding the URL analysis.

  • @aliibrahim5479
    @aliibrahim5479 8 месяцев назад +1

    I honestly needed this so much as a client keeps requesting I analyse the phishing emails he gets hahahahaha

    • @MyDFIR
      @MyDFIR  8 месяцев назад +1

      Glad it was helpful ❤️

  • @rahuljohn8816
    @rahuljohn8816 8 месяцев назад

    Can u do more BTLO labs!!!loved it!!Thank you so muchh!!!Keep going❤🎉

    • @MyDFIR
      @MyDFIR  8 месяцев назад

      Of course!!

  • @SayoOlanbiwonnu
    @SayoOlanbiwonnu 7 месяцев назад

    @MYDFIR, Beast mode.. Good job

    • @MyDFIR
      @MyDFIR  7 месяцев назад

      Thanks ❤️

  • @anldemir7565
    @anldemir7565 6 месяцев назад

    things are not hard if teaches correctly. Thank you so much thoose were too confusing to me before this video

    • @MyDFIR
      @MyDFIR  6 месяцев назад

      Glad it was helpful! I have a lot more of these videos on my channel. Feel free to take a look 💪

  • @kirkreiglori2434
    @kirkreiglori2434 8 месяцев назад

    Super important vid.

    • @MyDFIR
      @MyDFIR  8 месяцев назад

      Thank you🙌

  • @Tikva123
    @Tikva123 8 месяцев назад

    Gold ! Thank you !

    • @MyDFIR
      @MyDFIR  8 месяцев назад

      You bet! 🙌

  • @henryfx8673
    @henryfx8673 6 дней назад +1

    Hey great instructor. Pls do you have a group or platform we can join to learn more 😮?

    • @MyDFIR
      @MyDFIR  6 дней назад

      I have a course that you can enroll in! You can find more information here: academy.mydfir.com/p/soc

  • @TravelLifestyleWithAlinase
    @TravelLifestyleWithAlinase 8 месяцев назад

    Powerful 😅 I learnt alot thanks 💯😊😊

    • @MyDFIR
      @MyDFIR  8 месяцев назад

      You’re welcome 😊

  • @thehaffytaffy
    @thehaffytaffy 18 дней назад

    This what a Brillant video,
    I’m just curious but can we use these tools to analyse the phishing emails we receive via our own email address ?
    Obviously I will be using a virtual machine like you mentioned.

    • @MyDFIR
      @MyDFIR  18 дней назад

      Yes absolutely!

  • @DANNOS1993
    @DANNOS1993 Месяц назад

    Nice Video!, Where can I find more examples of these email analysis?

    • @MyDFIR
      @MyDFIR  Месяц назад

      In my course I provide more examples for email analysis! Other than that, there are blogs out there that walk you through email analysis.

  • @Biggad14412
    @Biggad14412 5 месяцев назад

    Hello, Is there a breakdown step by step of a SOC analyst should always do? like no matter the threat you automatically do these steps first. Does this list exist?

    • @MyDFIR
      @MyDFIR  5 месяцев назад +1

      Kinda not really if that makes sense lol - What you’re looking for are called run books and these will vary by organizations since not all triage of a same threat will be the same due to process & technology. There are generic ones out there but its not something I would follow automatically but rather use as a guide.

  • @Okdoky12345
    @Okdoky12345 6 месяцев назад

    your the best thank you!
    in general this is somthing that you suggest to upload to github for example?

    • @MyDFIR
      @MyDFIR  6 месяцев назад +1

      No, this is something you can talk about during an interview when you are asked about phishing/email investigations.

  • @Joshua_t_
    @Joshua_t_ 4 месяца назад

    How would you get an email file like the one that is being evaluated in the video?
    In a real world situation, not the training email file.

    • @Joshua_t_
      @Joshua_t_ 4 месяца назад

      I hopped on gmail, clicked on “show original”, immediately figured it out. I want to thank myself for my quick help.

    • @MyDFIR
      @MyDFIR  4 месяца назад

      Great job 🙌

  • @arslansiddiqui654
    @arslansiddiqui654 8 месяцев назад

    Amazing content !!!

    • @MyDFIR
      @MyDFIR  8 месяцев назад

      Thank you 🙌

  • @topbestavail
    @topbestavail 8 месяцев назад

    Really amazing to be honest, but how can i add this to my CV?

    • @MyDFIR
      @MyDFIR  8 месяцев назад +1

      If you really wanted, you could add this as a skill (phishing investigation)

  • @johnvardy9559
    @johnvardy9559 8 месяцев назад

    My hero how is going your course? As you said till Ende Mai or First juny will be released?

    • @MyDFIR
      @MyDFIR  8 месяцев назад +1

      Had to push to June, expect June 10th (my 1 year anniversary on RUclips) 😄

  • @habibaaa5141
    @habibaaa5141 8 месяцев назад

    Wow thank you!

    • @MyDFIR
      @MyDFIR  8 месяцев назад

      You're welcome!

  • @Javaman92
    @Javaman92 7 месяцев назад

    This had me laughing last night. Bill Jobs... and microapple. Gotta love it.
    I'm correct when I say that you have all these resources downloaded in the guest on your virtual box? So they are all on the Windows 10 VM, right?

    • @MyDFIR
      @MyDFIR  7 месяцев назад

      😂😂 yea you’re absolutely correct!

  • @Pepou1981
    @Pepou1981 8 месяцев назад

    how to download the email file from outlook please ?

    • @MyDFIR
      @MyDFIR  8 месяцев назад

      support.microsoft.com/en-us/office/save-an-outlook-message-as-a-eml-file-or-a-pdf-file-4821bcd4-7687-4d6d-a486-b89a291a56e2

  • @swapnabachu3720
    @swapnabachu3720 8 месяцев назад

    email gateway doesn't block spf fail mails?

    • @MyDFIR
      @MyDFIR  8 месяцев назад

      In a perfect world it would!

    • @swapnabachu3720
      @swapnabachu3720 8 месяцев назад

      @@MyDFIR when i am explaining interviewer about phishing email analysis.. he asked why email gateway hasn’t blocked it when spf and dkim fails and no alignment… if it blocks straight away no need of further investigation as well… am confused at this stage what to answer… please help me

    • @swapnabachu3720
      @swapnabachu3720 8 месяцев назад

      @@MyDFIR i can reply email gateway works on signature based i mean blacklists.. hence it was not updated with latest signature or there might be a delay between new phishing campaign launch and update of these lists, hence email bypassed

    • @swapnabachu3720
      @swapnabachu3720 8 месяцев назад

      @@MyDFIR can you correct me here?

  • @cyberjuss
    @cyberjuss 8 месяцев назад

    Hey is it okay if i create a blog narrating the steps done to accomplish this lab of i decide to do it as proof and evidence that I did it ? With your permission of course

    • @MyDFIR
      @MyDFIR  8 месяцев назад +1

      Yes of course 👍thanks for asking

  • @bulba888
    @bulba888 8 месяцев назад

    So phyishing, and malware analysis is important for SOC too

    • @MyDFIR
      @MyDFIR  8 месяцев назад +1

      Yup - Malware, Identity, Endpoint, Network & Cloud is what you need to learn and know as a SOC analyst :)

  • @AzureNeptune998
    @AzureNeptune998 8 месяцев назад

    Saw new video, immediately clicked on.

    • @MyDFIR
      @MyDFIR  8 месяцев назад

      You’re simply amazing. ❤️

  • @0xC47P1C3
    @0xC47P1C3 8 месяцев назад

    Nice lab

    • @MyDFIR
      @MyDFIR  8 месяцев назад +1

      Thank you ❤️

  • @hardlessons9732
    @hardlessons9732 6 месяцев назад

    Did he created a virtual machine or did he went to a website that provides virtual machine?

    • @MyDFIR
      @MyDFIR  6 месяцев назад

      When you say he I am going to assume you're referring to me haha - I created a virtual machine for this and I will always recommend others who participate in labs to spin up their own virtual machine because it is just easier and safer to work with!

    • @hardlessons9732
      @hardlessons9732 6 месяцев назад

      @@MyDFIR For clarification. I am fairly new to the concept. I heard a VM from oracle ; virtual box can be downloaded and kali Linux installed on that VM. I haven’t physically done this but an illustration would be welcomed.

    • @MyDFIR
      @MyDFIR  6 месяцев назад

      No worries! I have a video here that can help you get started.
      Cybersecurity Tip: Build A Basic Home Lab (1/3)
      ruclips.net/video/kku0fVfksrk/видео.html

  • @BobOkulidis
    @BobOkulidis 8 месяцев назад

    that was fun

    • @MyDFIR
      @MyDFIR  8 месяцев назад

      Woohoo! Thanks for watching and be on the lookout for more lab series!

  • @Raviteja-le6mt
    @Raviteja-le6mt Месяц назад

    just observation: he said first couple of bytes but he copied first 4 bytes for file singnature

    • @MyDFIR
      @MyDFIR  Месяц назад

      Heheh english is hard but yes you’re correct.

  • @crowbar9566
    @crowbar9566 5 месяцев назад

    Co Can Da??? What kind of magic roundabout drug-induced swizzle-sticks is this?? 😂

    • @MyDFIR
      @MyDFIR  5 месяцев назад +1

      LOL yeah when I first read it I was like... am I saying this right?!

  • @Javaman92
    @Javaman92 7 месяцев назад +1

    HAHAHA I keep having questions and posting them and then realizing the answer and deleting the posts.

    • @MyDFIR
      @MyDFIR  7 месяцев назад +1

      😂it happens! How are you enjoying the content so far? Hoping you’re learning lots!

    • @Javaman92
      @Javaman92 7 месяцев назад

      @@MyDFIR I've definitely learned enough to be even more cautious. I've done a lot of surfing RUclips, especially more on scanning emails. That is something that I will continue to encounter and it will be interesting to be able to do more than block suspicious emails.
      No one comes close to the one you did. Perhaps you can do more? ;-)

    • @MyDFIR
      @MyDFIR  7 месяцев назад +1

      👀👀👀 maybe haha thanks!

  • @37j.
    @37j. 8 месяцев назад

    give me your course free 😥😥

    • @MyDFIR
      @MyDFIR  8 месяцев назад +1

      My RUclips videos are just as good as the course and those are free 😁

  • @maxi20zexi20
    @maxi20zexi20 7 месяцев назад

    amazing video thx bro