Day 2: One man's false positive is another man's potpourri. Welcome to Day 2 of the Advent of Cyber 2024 challenge by TryHackMe! Today’s challenge is all about analyzing logs to uncover suspicious activity and decode important details. Let's dive into the step-by-step walkthrough to solve the puzzle: “One man's false positive is another man's potpourri.” Challenge Context We are tasked with investigating suspicious login activities and commands related to Glitch, a key character in the Wareville storyline. By analyzing the logs, we aim to answer the given questions and understand how Glitch played a role in fixing the systems. Step-by-Step Solution Question 1: What is the name of the account causing all the failed login attempts? Analysis : By scanning the provided logs, we observed repeated login failures. Clue : The account responsible for the failed login attempts is consistently mentioned. Answer : service_admin Question 2: How many failed logon attemp...
Safe Secure Audit