<?xml version="1.0" encoding="UTF-8"?><rss version="2.0" xmlns:content="http://purl.org/rss/1.0/modules/content/">
  <channel>
    <title>HolidayHack &amp;mdash; drsh0&#39;s llog</title>
    <link>https://drsh0.writeas.com/tag:HolidayHack</link>
    <description>my learning log; notes on cybersec activities, ctfs, and ill-equipped cyber adventures. Consume responsibly.</description>
    <pubDate>Sun, 26 Apr 2026 19:23:16 +0000</pubDate>
    <image>
      <url>https://i.snap.as/v7Oo2ci6.png</url>
      <title>HolidayHack &amp;mdash; drsh0&#39;s llog</title>
      <link>https://drsh0.writeas.com/tag:HolidayHack</link>
    </image>
    <item>
      <title>SANS Holiday Hack Challenge 2020</title>
      <link>https://drsh0.writeas.com/sans-holiday-hack-challenge-2020?pk_campaign=rss-feed</link>
      <description>&lt;![CDATA[https://holidayhackchallenge.com/2020/&#xA;&#xA;Updating this as soon as the event starts in mid-December 2020 🎄&#xA;!--more--&#xA;&#xA;Resources&#xA;&#xA;cheatsheet&#xA;&#xA;#sans #holidayhack #ctf #kringlecon]]&gt;</description>
      <content:encoded><![CDATA[<p><a href="https://holidayhackchallenge.com/2020/" rel="nofollow">https://holidayhackchallenge.com/2020/</a></p>

<p>Updating this as soon as the event starts in mid-December 2020 🎄
</p>

<h3 id="resources" id="resources">Resources</h3>

<p><a href="https://drive.google.com/file/d/1hXGELvPjCdqeFXIyP7m-FDFRLHpzA-vc/view?usp=sharing" rel="nofollow">cheatsheet</a></p>

<p><a href="https://drsh0.writeas.com/tag:sans" class="hashtag" rel="nofollow"><span>#</span><span class="p-category">sans</span></a> <a href="https://drsh0.writeas.com/tag:holidayhack" class="hashtag" rel="nofollow"><span>#</span><span class="p-category">holidayhack</span></a> <a href="https://drsh0.writeas.com/tag:ctf" class="hashtag" rel="nofollow"><span>#</span><span class="p-category">ctf</span></a> <a href="https://drsh0.writeas.com/tag:kringlecon" class="hashtag" rel="nofollow"><span>#</span><span class="p-category">kringlecon</span></a></p>
]]></content:encoded>
      <guid>https://drsh0.writeas.com/sans-holiday-hack-challenge-2020</guid>
      <pubDate>Tue, 01 Dec 2020 02:24:41 +0000</pubDate>
    </item>
    <item>
      <title>SANS KringleCon / Holiday Hack 2019</title>
      <link>https://drsh0.writeas.com/sans-kringlecon-holiday-hack-2019?pk_campaign=rss-feed</link>
      <description>&lt;![CDATA[Talks&#xA;&#xA;John Strand, Keynote: A Hunting We Must Go&#xA;&#xA;Interval, con time, data size.&#xA;Holes in an org are just as important to detect as threat actors. &#xA;Deception time + Reaction time &lt; Time to perform attack.&#xA;&#xA;Katie Knowles, How to (Holiday) Hack It: Tips for Crushing CTFs &amp; Pwning Pentests&#xA;&#xA;Recon -  ID Vuln -  ID Exploit -  Test -  New Info Integrate&#xA;&#xA;1. Understanding the Problem&#xA;&#xA;Drawing is a useful way to visualise a problem e.g.:&#xA;&#xA;img src=&#34;https://i.snap.as/kAC3wJ7.png&#34; width=&#34;400&#34;/&#xA;&#xA;credit: Katie Knowles&#xA;&#xA;2. Plan&#xA;&#xA;Google things; look for other things that are similar. &#xA;Having a list of things that we&#39;ve done and then ensuring all bases are covered in each step e.g. all ports checked, UDP as well? &#xA;&#xA;3. Carry out the plan&#xA;&#xA;4. Looking Back&#xA;&#xA;Record your steps, useful links, wiki. &#xA;&#xA;Snow, Santa’s Naughty List: Holiday Themed Social Engineering&#xA;&#xA;Tools&#xA;rita - tool to check for beacons&#xA;Zeek&#xA;Url Crazy - typosquatting #socialengineering&#xA;&#xA;#CTF #SANS #HolidayHack #KringleCon2019]]&gt;</description>
      <content:encoded><![CDATA[<h2 id="talks" id="talks"><code>Talks</code></h2>

<h3 id="john-strand-keynote-a-hunting-we-must-go" id="john-strand-keynote-a-hunting-we-must-go">John Strand, Keynote: A Hunting We Must Go</h3>
<ul><li>Interval, con time, data size.</li>
<li>Holes in an org are just as important to detect as threat actors.</li>
<li>Deception time + Reaction time &lt; Time to perform attack.</li></ul>

<h3 id="katie-knowles-how-to-holiday-hack-it-tips-for-crushing-ctfs-pwning-pentests" id="katie-knowles-how-to-holiday-hack-it-tips-for-crushing-ctfs-pwning-pentests">Katie Knowles, How to (Holiday) Hack It: Tips for Crushing CTFs &amp; Pwning Pentests</h3>
<ul><li>Recon –&gt; ID Vuln –&gt; ID Exploit –&gt; Test –&gt; New Info Integrate</li></ul>

<p><strong>1. Understanding the Problem</strong></p>
<ul><li>Drawing is a useful way to visualise a problem e.g.:</li></ul>

<p><img src="https://i.snap.as/kAC3wJ7.png" width="400"/></p>

<p><em>credit: Katie Knowles</em></p>

<p><strong>2. Plan</strong></p>
<ul><li>Google things; look for other things that are similar.</li>
<li>Having a list of things that we&#39;ve done and then ensuring all bases are covered in each step e.g. all ports checked, UDP as well?</li></ul>

<p><strong>3. Carry out the plan</strong></p>

<p><strong>4. Looking Back</strong></p>
<ul><li>Record your steps, useful links, wiki.</li></ul>

<h2 id="snow-santa-s-naughty-list-holiday-themed-social-engineering" id="snow-santa-s-naughty-list-holiday-themed-social-engineering">Snow, Santa’s Naughty List: Holiday Themed Social Engineering</h2>

<h2 id="tools" id="tools">Tools</h2>
<ul><li><code>rita</code> – tool to check for beacons</li>
<li><a href="https://www.zeek.org/" rel="nofollow">Zeek</a></li>
<li><code>Url Crazy</code> – typosquatting <a href="https://drsh0.writeas.com/tag:socialengineering" class="hashtag" rel="nofollow"><span>#</span><span class="p-category">socialengineering</span></a></li></ul>

<p><a href="https://drsh0.writeas.com/tag:CTF" class="hashtag" rel="nofollow"><span>#</span><span class="p-category">CTF</span></a> <a href="https://drsh0.writeas.com/tag:SANS" class="hashtag" rel="nofollow"><span>#</span><span class="p-category">SANS</span></a> <a href="https://drsh0.writeas.com/tag:HolidayHack" class="hashtag" rel="nofollow"><span>#</span><span class="p-category">HolidayHack</span></a> <a href="https://drsh0.writeas.com/tag:KringleCon2019" class="hashtag" rel="nofollow"><span>#</span><span class="p-category">KringleCon2019</span></a></p>
]]></content:encoded>
      <guid>https://drsh0.writeas.com/sans-kringlecon-holiday-hack-2019</guid>
      <pubDate>Sun, 15 Dec 2019 03:21:58 +0000</pubDate>
    </item>
  </channel>
</rss>