
Performed a live cybersecurity assessment on a university Linux server. During analysis, active attack activity was identified, including brute-force authentication attempts and exploitation attempts targeting Log4Shell (CVE-2021-44228).
Performed a live cybersecurity assessment on a university Linux server. During analysis, active attack activity was identified, including brute-force authentication attempts and exploitation attempts targeting Log4Shell (CVE-2021-44228).
“Coordinated IPs” refers to multiple malicious IP addresses originating from the same subnet, indicating the use of shared attack infrastructure or automated attack tooling targeting the system simultaneously.
Used for active reconnaissance and attack surface enumeration:
Performed host-based security auditing:
Developed scripts to automate security monitoring:
journald logs for failed authentication attemptsA total of 12 security findings were documented and categorized:
PermitRootLogin no)MaxAuthTries 3)Jordan Dormann
CompTIA Security+