I’m happy to report I have completed the internal training at Microsoft, related to Microsoft Defender for Endpoint (MDE)!
This means that soon I will start taking real cases from customers!
Wish me luck!
Certified Ethical Hacker
I’m happy to report I have completed the internal training at Microsoft, related to Microsoft Defender for Endpoint (MDE)!
This means that soon I will start taking real cases from customers!
Wish me luck!
I’m very happy to announce today was my first day of working at Microsoft!
While the job is fully remote, I chose to work onsite, at the Lisbon Office of Microsoft Portugal, for my first day.
I’ve met some of my colleagues, and thankfully I liked the vibe of the workplace, with several people helping out.
I also liked the space, modern, yet comfortable and cozy.
As for the actual job, I will be working with Microsoft Defender for Endpoint.
Let us hope this is the beginning of a long and productive journey!
I just released a tool to fix the problems with the recent CrowdStrike update.
This helps delete the problematic files, and is made simple to use, so it can be used for Junior IT personnel.
This is made in Object Pascal, with Lazarus IDE, and I’m releasing it for free, as open-source.
1. Boot into Safe mode or Windows Recovery Environment
2. Run the application and click "FIX IT"
3. Reboot
Download version 1.04 (64 Bits)
SHA-1 Hash: CA9E87F62404E73C27CE1823ED808E8C516AEA0A
Todays we are seeing major disruptions to IT infrastructure worldwide, afecting Airlines, Banks, Hospitals, Emergency services, Telecom companies, Media outlets, Payments processing, among others. [1] [2]
The root cause seems to be a faulty update released by CrowdStrike, a Cybersecurity company, for Falcon Sensor, their Endpoint Protection solution, which caused computer to lock-up and not turn-on properly, showing a Blue-screen error.
In an unrelated event, Microsoft Azure Cloud services also had major issues around the time of the “CrowdStrike problem” a Central US Azure outage (Tracking Id: 1K80-N_8) – those issues with Azure seem to be already mostly resolved. [3]
As the affected computers and not running properly, unfortunately it seems they will need to be fixed one-by-one.
The solution seems to be:
1. Boot into Safe mode or the Windows Recovery Environment
2. Run the command:
del "C:\Windows\System32\drivers\CrowdStrike\C-00000291*.sys"
3. Reboot
Remember the 3 basic principles of Cybersecurity are Confidentiality, Integrity and Availability, in the quest to secure the systems we should pay attention to issues like this, which end-up causing as much disruptions as a major CyberAttack.
We should also be aware that Cybersecurity is, in large part, a risk-management and a balancing act between those 3 pillars.
I’m very happy to announce that today I signed a work contract with Microsoft!
I will be working in Cybersecurity, as a Support Engineer, providing technical support and advice related to Microsoft Defender for Endpoint, to clients in Europe, Middle East and Africa (EMEA).
I’m also happy that the Certified Ethical Hacker certification helped me get this job – it was one of the preferred qualifications on the job posting.
I will start in less than 1 month, working for Microsoft Portugal, and certainly will have more news soon!
I’m very excited to announce my new YouTube channel!
The C-Days 2024 Cybersecurity conference ended today, an event in which I had the honor of participating.
It was a very interesting 3 days, full of lectures and workshops, in Coimbra, a university city, marking 10 years of the existence of the National Cybersecurity Center!
Today, as part of the C-Days Conference, I attended a very interesting Workshop, related to reverse engineering of malware, presented by a member of CERT.PT (Computer Emergency Response Team), part of the Portuguese National Cybersecurity Centre.
This workshop offers a hands-on approach to reverse engineering malicious scripts on Windows systems, covering JavaScript, VBS, and Powershell. Aimed at cybersecurity technicians, this workshop ranges from static and behavioral analysis to manual deobfuscation techniques using Python. The objective is to enable participants to identify, analyze and collect IoCs of these threats, thus enabling them to mitigate what is one of the most common types of malware used as an entry vector to compromise organizations.
Its next week that C-Days 2024, the biggest Cybersecurity conference in Portugal, organized by the Portuguese National Cybersecurity Centre will happen in Coimbra, Portugal, on the 18th, 19th and 20th of June!
Under the theme of “More Prevention”, this event marks the 10 years of the Portuguese National Cybersecurity Centre, and there will be a talk “looking back” at the past and looking forward towards the future of the organization.
I’m also particularly interested in the “Reverse Engineering Malicious Scripts on Windows” Workshop, presented by Duarte Mortágua from CERT.PT!
I’m already registered for the conference, and looking forward to ti!
Anyone interested can register at the official website:
www.c-days.cncs.gov.pt
UPDATE: This bundle is no longer available!
In this book bundle from Humble Bundle, you will get 18 books related to Cybersecurity, published by Pearson, ranging from topics like CompTIA Security+, Network Security, Zero Trust Architecture, Microsoft Sentinel and Microsoft Defender for Cloud.
Full list of books:
Get the bundle now! It expires in less than 48 hours!