cancel
Showing results for 
Search instead for 
Did you mean: 
Create Post

THWACK MONTHLY MISSION - SEPTEMBER 2017

Level 15



The supreme art of [cybersecurity] war[fare] is to subdue the enemy without fighting. – Sun Tzu *With added geekiness. 

Young THWACK®-hoppers, your mission this month is to master the art of Security Kung Fu. Those who master this discipline will be better equipped to defeat IT security threats. Enemies you may face on your journey to impenetrable IT security include malware, phishing scams, compliance violations, or even internal threats. However, you will not need to fight your enemies alone. Accompanying you on your journey is SolarWinds® Log & Event Manager (LEM)—a SIEM that makes it easy to use logs for security, compliance, and troubleshooting. LEM is highly skilled in threat intelligence, active response, and real-time event correlation. To complete this mission, you’ll need to work together to move swift as the wind and closely formed as the wood. Attack like the fire and be still as the mountain (– Sun Tzu).

Good luck!



SEPTEMBER MONTHLY MISSION

Use the mission’s resources to complete the tasks and answer the questions for a chance to win!

Correctly answer each question during the week and you'll be entered for a chance to win the weekly prize.

Correctly answer all 20 questions over the course of the month and you'll be entered for a chance to win the grand prize: A PS4 + Kung Fu Panda Game!


PRIZES

Weekly Prizes & Drawing Dates:

September 11: Home Security Camera
September 18: Aegis Flash Key 8 GB
September 25: Tiny Arcade
October 2: Ninja Turtle RC ATV

Grand Prize

October 2: PS4 + Kung Fu Panda Game

150 points are being awarded for each correctly answered question. There are 20 questions, which means you can earn a maximum of 3,000 points for this mission.



MISSION SHORTCUT

Complete the mission shortcut to earn an additional 1,000 THWACK® points & the first 100 get Kung Fu Security T-shirts!
The shortcut is simple:
    1. Download Log & Event Manager
    2. Set up an action rule to ensure that you receive an email when a new group member is added to the admin group.*Click HERE for hint.
    3. Submit a screenshot of the rule you have set up







MISSION RULES

A new question will open every day (Monday - Friday) starting on September 4, 2017. Once a question has opened, it will remain open until October 1, 2017 at 11:59 p.m. CDT. Check the schedule below for exact open/close times.



Weekly PrizesMonTueWedThuFriWinners
Week 1: Complete questions 1-5 by September 10 to be entered to win: Home Security Camera
Week 2: Complete questions 6-10 by September 17 to be entered to win: Aegis Flash Key 8 GB
Week 3: Complete questions 11-15 by September 24 to be entered to win:Tiny Arcade
Week 4: Complete questions 16-20 by October 1 to be entered to win: Ninja Turtle RC ATV

Correctly answer all 20 questions by October 1 and get entered to win the Grand Prize! PS4 + Kung Fu Panda Game



Monthly Mission Terms and Conditions: US, UK, and Canada | Germany | Australia

Mission Shortcut Terms and Conditions: US, UK, and Canada | Germany

284 Comments

There is job security in IT security jobs!

RT

The patching will continue until security improves.

I love me some security now that I am running security

Level 11

The hint on Question 2 seems to be the same one we had on Question 1?

Level 12

How do you get into Security? I was wondering if this would be an option for me.

Study it.  Enroll in classes that enable you to test and achieve a CISSP rating.  Let your employer know you're interested in I.T. Security, and ask if there's a place in your organization to which you can contribute or transfer.

https://www.google.com/search?q=learning+network+security&sourceid=ie7&rls=com.microsoft:en-US:IE-Ad...

Level 9

The source may be the same but questions are different young grasshopper.

Level 12

I wouldn't be able to stay with my current employer I am the only IT-Network and Systems Admin here.

I've had co-workers study on their own for CISSP certifications, test and receive them, then move to other businesses. 

I've also had co-workers study security but stay on as SysAdmins, DBA's, Network Analysts, etc.

You've got the world at your feet--especially if you're willing to move/travel/get a different employers.  If you have sunk down roots (you've got a mortgage on a nice home you like, you're kids are in school and you don't want to transplant them, your wife has a great job in your town and is unwilling to move, you've got a good local support team (parents, family, in-laws) to help you with your kids when things are challenging, etc.), then staying put is probably a desirable option.

I'd say you should study what interests you, then follow your passions.  Maybe your current employer needs those services more, and will open a new position for you in IT Security, and will hire someone new for your current position.

pastedImage_0.png

Level 12

snatch-pebble-from-hand-you-may-then-answer-question.jpg

It is hard to keep up with the moving object called "IT Security".  One way I keep current with the issues and vocabulary is to listen to Podcasts.

Timely Security Podcasts

SANS Internet Storm Center - Listen to this to start my day

Cyber Wire - Good production, information, and news

Weekly and in depth Podcasts

Defensive Security Podcast - Real opinions and no comercials

Down the Security Rabbithole - Well done

Security Now - Steve Gibson is fantastic - Highly recomended

Paul's Enterprise Weekly

Paul's Security Weekly - Bare knukles security with acohol (explict warning)

Cyber Security Interviews

Packet Pushers - Datanauts

Threatpost Podcast

Cloud Computing Podcasts

Cloud Computing Weekly - Is your future cloudy?

Other

Grumpy Old Geeks - Well done and good information.

Another way to learn is Cybrary - Online Cyber Security Training, Free, Forever 

The Cybrary CISSP course is really good and free.

RT

Level 11

Cheers, I'm a muppet

Level 20

The are all good RT... I love security too.  Being network guys/gals we already have been surrounded by it... why not make it a main focus I say!

Level 20

lolol

Level 20

Those were a little wait what?  Then is makes sense.

Level 9

Major kudos are in order for this month.

KungFu Panda is by far one of my favorite movie series so thank you for making it the theme of this Month's mission.

Level 13

hmmm, did anyone get today's question? I thought I picked the right one, then the big dreaded X came up, but the answer that showed, was the one I picked...

I found it in the article and got it right.

RT

MVP
MVP

I too got it right.

Level 7

Got the final question right....What next?

Level 9

Unable to access today's hint.

pastedImage_0.png

Level 7

Is anyone else having problems clicking on the hint. Says "Access to this place or content is restricted. If you think this is a mistake, please contact your administrator or the person who directed you here. "

Level 21

I am getting an "Unauthorized" page when I try go to go the hint page for today.

Level 10

I was about to post the same, but for me its all 5 days I'm "unauthorized"....was unsure if it was part of the mission *insert squinting Fry from Futurama meme*

Level 10

+1

Is definitely a test.

Level 13

So IT security is denying us access to the IT security answer?

Level 9

when i click on "Click Here For Hint" i get the following error. I am logged into the system can someone help?

Access to this place or content is restricted. If you think this is a mistake, please contact your administrator or the person who directed you here

Thanks

KT

MVP
MVP

I got the same message, although the answer should be fairly obvious without needing to go to the link.

Level 9

i didnt get a chance to answer yesterdays.. i was traveling...

MVP
MVP

You should still be able to answer yesterdays...

Level 12

I too get the message:

Just for G&G I went back to Q1 and clicked for the hint and get the same "UNAUTHORIZED" so based on the history of the week I am guessing that Q5 (today) was a link to the same article. Unfortunately we delete browser history every night so I can't go back and try to access it that way (even though I suspect it wouldn't work anyway).  pastedImage_0.png

Level 10

same here

Level 15

Hey guys! You should be able to access the hint link now. Sorry about that!

Level 9

I am good now.. Thanks...

Level 12

Thank you wabbott

Level 7

It's wonderful to be established in a field with near to, or maybe even less than Zero unemployment! (If that doesn't make sense think about who all might be moonlighting)

Level 12

Congrats jessem

Level 9

I only knew a few of these.  Awresome!

MVP
MVP

Another good mission, thanks for the efforts you put into this.

I suspect job security in Equifax's IT Security group has recently shown a decline . . .

pastedImage_0.png

Level 12

The executives at Equifax should be serving prison time. They sold all their Equifax stock prior to making the public announcement of the hack.

pastedImage_0.png

Level 20

I wish I'd known that... I'd have shorted them in a second!  You may find out some people do get charged with a crime... although they'll do no time most likely.  It'll be a financial tap on the wrist I bet!

I'll bet the decision makers responsible for not allowing the breach to be reported to the public until after profits have been taken during stock sales won't be prosecuted.

No time will be served by anyone.  Maybe the profits gained will be paid back in penalties, which will be negotiated to lower amounts.

Sigh.  When money rules over altruism and decency and good manners . . .

pastedImage_0.png

Level 7

Additions I would add to your Podcast list would be:

Southern Fried Security Podcast

the Social-engineer Podcast

Recorded Future Podcast

TheHackernews is a great resource for up to date news they have a great app and a decent website

I keep a nifty collection of blogs and stuff for quick reference at:

JustaPageOnTheNet

or my see my blog @

mostlyJustSecurity

Level 10

Hint link results in:

"

Not Found

  

 

 

The item does not exist. It may have been deleted. "

Please fix

Level 14

I was out of the office yesterday & the hints for Q6 & Q8 & Q9 gives me

NOT FOUND

The item does not exist. It may have been deleted.

& I'm sure that Q6 hint worked when I did it a few days ago.

Level 14
Level 7

None of the hints are working for me. Anyone else having this issue?

pastedImage_0.png

Level 12

Good morning, I got same thing too (Page Not Found)