Kevin Garay - Cybersecurity
Kevin Garay - Cybersecurity
  • 6
  • 118 893
Create a Vulnerability Report with Pivot Tables
Hey, y'all! I decided to create an extension to my vulnerability management labs and show you how to create vulnerability reports that you would normally share with your SMEs or managers. Hope you all enjoy it!! Please like and subscribe :)
Here's the report generated from Qualys so you can try to make pivot tables:
docs.google.com/spreadsheets/d/1JXkhngX4BJ_S0MNDHtJsvmjf2Pb-6wwEHpdyiiasJZM/edit?usp=sharing
(Please download a copy and do not request to edit it)
Here's the Risk Acceptance form template:
docs.google.com/document/d/1OlRm2k13gmZbdddNTDPb_8GjrEPKORJe/edit?usp=sharing&ouid=112590209006764513327&rtpof=true&sd=true
Interested in taking college credit online? This will help you if you're planning to attend WGU!
Check out Sophia Learning! Use my affiliate link below and use my code "KEVIN10" for 10% off your first month!
www.sophia.org/?
All rights to the music goes to the artist :)
Track: "lolo", seazin
Music provided by Slip.stream
Free Download/Stream: get.slip.stream/RRn9BD
Listen on Spotify: go-stream.link/sp-seazin
#cybersecurity #informationtechnology #career #education #cve #vulnerabilitymanagement
Переглядів: 5 645

Відео

Build a Raspberry Pi Nessus Server and Scan your Home Network (Home Lab)
Переглядів 3,2 тис.Рік тому
Hey all! I'll be showing you guys how to use Nesus Essentials to scan your home network and virtual machines for potential vulnerabilities and try to remediate as many as we can! I hope you all enjoy it! PLEASE do NOT scan a network you do not have explicit permission to scan. Unauthorized activity like this can result in serious legal consequences. So ONLY scan your home network. Thank you :) ...
Google Cybersecurity Certificate Review
Переглядів 22 тис.Рік тому
Hello everyone! I'll be talking about Google's new Cybersecurity Professional Certificate. I hope that I am able to help you make a decision about whether or not you want to complete this program. Please like, comment, and subscribe! Want to take the dive? Here's the link to Google's cybersecurity certificate: www.coursera.org/professional-certificates/google-cybersecurity Connect with me on Li...
Learn Qualys Vulnerability Management (Home Lab)
Переглядів 59 тис.Рік тому
Hello everyone! In this video, I will teach you how to use Qualys Community Edition!!! You will be able to scan your home network or virtual machines for vulnerabilities and learn how to remediate them. Qualys is a powerful tool that organizations use to scan their networks for vulnerabilities or misconfigurations in order to strengthen their network security. Learning this tool can vastly impr...
Speedrun your Degree in 2023?!
Переглядів 24 тис.Рік тому
In this video, I discuss the steps that I took to accelerate my WGU Cyber bachelor's and finished it in ONE TERM. Mind you, this won't guarantee that you will also finish your degree in one term. However, these steps can potentially save you a term or two terms! Thank you for watching. All the links from the video are down below: GUYS!!! AFTER POSTING THIS VIDEO, SOPHIA LEARNING MADE ME AN AFFI...
IS WGU WORTH IT IN 2023?
Переглядів 6 тис.Рік тому
Hey everyone! This is my first video on my channel and I would like to talk about my experience at Western Governors University (WGU)! Considering making more videos so feel free to stay posted! Huge shoutout to two people who really helped me during my WGU journey!! Josh Madakors channel: www.youtube.com/@JoshMadakor Tyler Ramsbey: www.youtube.com/@TylerRamsbey Timestamps: Intro: 0:00 WGU Over...

КОМЕНТАРІ

  • @ptgigg
    @ptgigg 4 дні тому

    Could not get Nessus to work on a Pi so gave up. Used a Mac instead.

  • @ibrahimatanoudiallo747
    @ibrahimatanoudiallo747 Місяць тому

    Hello I have a ‘Last Checked-in mone 7 days’ error on the Agent Host with Qualys Cloud Platforme. Please what is causing this?

  • @KellyTheKool1
    @KellyTheKool1 Місяць тому

    Can this be done on your own ISP?

  • @hanspuffer5851
    @hanspuffer5851 2 місяці тому

    Do you have a spreadsheet for the Bachelor of Information Technology degree???

  • @shanadjiqta
    @shanadjiqta 3 місяці тому

    Kevin, it was a great explanation and hands-on tutorial. I am working as Cybersecurity Analyst and It was a pleasure to learn about the authenticated scan. You speak really calm. Rare and valuable finding!

  • @kenylabrador
    @kenylabrador 3 місяці тому

    Great video, thanks!

  • @jnahara
    @jnahara 3 місяці тому

    thank you for this video bro

  • @Tech_Tom_Channel
    @Tech_Tom_Channel 3 місяці тому

    What do you recommend? Going for the certs or degree first. Love your channel btw would love to see more content.

  • @abdelrahmanahmedsherif2509
    @abdelrahmanahmedsherif2509 4 місяці тому

    Hi Kevin, i need a help, how can i assign Public IPs to my deployed scanner? i should be using that range 64.41.200.240-64.42.200.250

  • @sysadmin-e678
    @sysadmin-e678 5 місяців тому

    Overall very good and adding the Win 10 test VM with vulnerable software is a good idea for learning/testing. One thing to be aware of is that in the real world do NOT make the changes mentioned in ua-cam.com/video/l5At5WDj7v0/v-deo.html. That lowers security to give the authenticated scan more access. An agent (not discussed and I'm not sure if it's even included with the Community Edition) should be installed and run as local admin to gain that level of access.

    • @Kevin-hu1iz
      @Kevin-hu1iz 5 місяців тому

      You're right! I should have mentioned that. Agents are normally used to perform authenticated scans but free editions don't come with it unfortunately. Nessus included. Thanks for pointing that out!

    • @sysadmin-e678
      @sysadmin-e678 5 місяців тому

      ​@@Kevin-hu1izI started playing around with the community edition yesterday and it does allow up to 16 assets with the Qaulys cloud agent but I have not used that yet.

  • @CyberArmy16
    @CyberArmy16 5 місяців тому

    Hi bro I appreciate your guidance, I just want to ask you a quick question. I have 48 credits from my college with BSc in computer science -concentration on cybersecurity engineering and also i have sec+ certificate. Do you think that will reduce the number of credits that I will take at WGU? or do I have to take some more certifications like pentest+ before i enrolled at WGU to save more credits and time?How many courses will be knocked out if i took pen+ before enrollment? Thank you again!!

    • @kevingaray_cyberguy
      @kevingaray_cyberguy 5 місяців тому

      Hey sorry for the late response. Your credits should transfer over, if not most of them. Having sec+ will also help you out so you don't need to take Pentest+ before you start (have wgu pay for it lol). Besides, it will only cover one course which is the penetration testing course. However I do suggest studying for it now so that you're prepared sooner.

  • @ainoleppanen744
    @ainoleppanen744 6 місяців тому

    Nice tutorial, very chill and informative. It would be cool to have some kind of beginners tutorial about the Qualys API, and advanced too.

  • @ChapalPuteh_
    @ChapalPuteh_ 6 місяців тому

    Good for fixed IP ..

  • @rothscliff6086
    @rothscliff6086 6 місяців тому

    bro you tutorial is so much better than the qualys official. Thank you!

  • @HackyourCareerPath
    @HackyourCareerPath 6 місяців тому

    Handsome Kevin!

  • @curwenarthurs6901
    @curwenarthurs6901 7 місяців тому

    Very helpful video. Thanks for sharing. I have a question on what all a company would need to do a proof of concept test run.

  • @kutipepe
    @kutipepe 7 місяців тому

    I do not understand why you needed to turn off the win 10 firewall, can you please explain it to me?

  • @polinenisreenidhi6012
    @polinenisreenidhi6012 7 місяців тому

    Hey Kevin I am stuck with the authentication I am not able to authenticate my Virtual box to Qualys It says unabale to complete windows login for host = , domain= , ntstatus= Can you please help me with this

  • @mayrasaday
    @mayrasaday 7 місяців тому

    Thank you for this video!!

  • @borosouros
    @borosouros 8 місяців тому

    That roadmap is crazy useful thanks

  • @sgtcojonez
    @sgtcojonez 8 місяців тому

    This is the type of school that makes it harder to find a job, because the market is saturared with people who did not EARN their degrees.

    • @kevingaray_cyberguy
      @kevingaray_cyberguy 8 місяців тому

      WGU is legitimate and a well-recognized recognized university and it's just as difficult as a regular school with the main difference being you can go at your own pace. The market is saturated because of many other factors such as cyber being a hot buzz word, people transitioning careers and mass layoffs. Having a degree and certifications helps boost your chances of breaking in. Just because you don't like it doesn't legitimize this program. I'd ask you to educate me but you can't even spell saturated. Regardless though I do wish you the best on your journey.

    • @RalphEdouard_InfoSec
      @RalphEdouard_InfoSec 8 місяців тому

      I don’t get it. Are Boise State University, BYU, University of Utah, University of Idaho, Nevada State University, University of Oregon, University of Portland, and many other colleges not real schools now? Cause they have the same accreditation as WGU.

  • @jeyjofm141
    @jeyjofm141 8 місяців тому

    Hey guys here is $20 off for Sophia learning. 5/282024 1) CNGN1LHF 2) WHJBWGTD 3) 7QQN7OSP 4) RPVQ30LK 5) VVL2PAAU 6) 22YUR7UH 7) BQD5OZNQ 8) 6N9LENC2 9) T7VIYDWB 10) S6FDNO22 11) A0B3UGST 12) 51G47NLJ 13) BLA8QE2U 14) 4P4TS0LA

  • @misterdabs
    @misterdabs 8 місяців тому

    Thank you, it’s clear and clear, precise.

  • @ScottPlude
    @ScottPlude 8 місяців тому

    great video. thanks!

  • @UzairAshfaq-pt3hv
    @UzairAshfaq-pt3hv 8 місяців тому

    Thanks for the video, Kevin. Waiting on more videos from your side, your knowledge is to the point and informative.

  • @ZeroDay30
    @ZeroDay30 9 місяців тому

    Did you have to take the CISSP, CCSP, SSCP to get your bachelors? I did not see it as a requirement for some of the security courses.

    • @kevingaray_cyberguy
      @kevingaray_cyberguy 9 місяців тому

      No for CISSP, You take an in-house CCSP exam with an optional opportunity to take the real exam, you have to take the SSCP exam.

  • @zinawarrior2444
    @zinawarrior2444 9 місяців тому

    Can you show this on a Unix environment?

  • @temitopeoluwadare906
    @temitopeoluwadare906 10 місяців тому

    Hello Kevin. Trust you're doing well. Please i am a subscriber and enjoying your class. I am actually stocked in the place of router IP I am using my Phone as my Internet provider. How do I manage this aspect. I have a month trial subscription on Qualys VMDR. Please sir. Your content is lovely.

  • @cnordbott
    @cnordbott 10 місяців тому

    Great video, thank you!

  • @satheeshkumarkv
    @satheeshkumarkv 10 місяців тому

    Hi, I’ve 10k vuls from my tenable scan. I want to segregate os and non os vulnerabilities. Kevin can you help? Thanks in advance

  • @Theswazzer
    @Theswazzer 10 місяців тому

    dont go here

    • @KNXWARE
      @KNXWARE 5 місяців тому

      why not

  • @Yananiso
    @Yananiso 10 місяців тому

    so brother im doing a professional certificate by google for cybersecurity, can you help me know which ones that can be exempted for me.

  • @Pwnappetit
    @Pwnappetit 11 місяців тому

    Thank you so much for this! I have to do Vulnerability Mgmt as part of my job but I had no direction and no mentor. Watching you edit the CSV file is a godsend.

    • @kevingaray_cyberguy
      @kevingaray_cyberguy 11 місяців тому

      I'm glad you found it helpful! It's such a useful way to report all active vulnerabilities in your environment 🙂

  • @oadegben
    @oadegben 11 місяців тому

    What if you enrolled into WGU already, can you still transfer classes while in the cybersecurity program?

    • @kevingaray_cyberguy
      @kevingaray_cyberguy 11 місяців тому

      Sadly no. Once you're enrolled and have started on your classes you can't transfer.

    • @oadegben
      @oadegben 11 місяців тому

      @@kevingaray_cyberguy thank you! I am in the process of enrolling and thinking about pushing my start date back so I can have some courses to transfer

    • @Kevin-hu1iz
      @Kevin-hu1iz 11 місяців тому

      ​@@oadegbenoh if that's the case then you can absolutely still transfer! I actually did that when I started 😅 I was in the enrollment process but found out about Sophia and asked to push my start date back a few months ahead. They were cool with it!

    • @oadegben
      @oadegben 11 місяців тому

      @@Kevin-hu1iz great! I figured let me take some courses to transfer before beginning the program. Thank you for your video and replies ☺️

    • @veuxlashes
      @veuxlashes 6 місяців тому

      @@Kevin-hu1iz ​​⁠would it be safe to say that we can keep transferring in classes as long it’s BEFORE doing the “commit to start documents” part of enrollment? I’m trying to figure out how to know which class I will need from Sophia after transferring in the A.S. Degree. I wanted more time than the one month from WGU’s enrollment time.

  • @ArabObserver
    @ArabObserver 11 місяців тому

    Nice video

  • @stevehill4864
    @stevehill4864 11 місяців тому

    Can you make more videos using this scanner?

  • @lexicybsec
    @lexicybsec 11 місяців тому

    Thank you!

  • @Miochi_fiochi
    @Miochi_fiochi Рік тому

    Hi Kevin, can you do a video scanning IaC w Snyk?

  • @DennisPhoonjaya
    @DennisPhoonjaya Рік тому

    Is the spreadsheet still relevant?

  • @Salute_vet22
    @Salute_vet22 Рік тому

    Thank you for the spreadsheet

  • @RRPS-yb7tt
    @RRPS-yb7tt Рік тому

    Great work Kevin! Can't way to test it on my raspberry pi =)

  • @udemeumana373
    @udemeumana373 Рік тому

    Thank you so much for the tutorial, while trying to install the Win10 VM this error popped-up "windows cannot read the <productkey> from the unattend answer file". Please do you know how I can fix it?

  • @senKeiser
    @senKeiser Рік тому

    Note: it doesn't work on RP4 OS 64 bits with v10.6.4. When installing, this is the errors I get: $ sudo dpkg -i Nessus-10.6.4-raspberrypios_armhf.deb Nessus-10.6.4-raspberrypios_armhf.deb (Reading database ... 57111 files and directories currently installed.) Preparing to unpack Nessus-10.6.4-raspberrypios_armhf.deb ... Unpacking nessus:armhf (10.6.4) over (10.6.4) ... Setting up nessus:armhf (10.6.4) ... /var/lib/dpkg/info/nessus.postinst: line 22: /opt/nessus/bin/openssl: cannot execute: required file not found Unpacking Nessus Scanner Core Components... /var/lib/dpkg/info/nessus.postinst: line 25: /opt/nessus/sbin/nessuscli: cannot execute: required file not found

    • @heliolux
      @heliolux Рік тому

      I got the same error when installing the Nessus package

    • @hexdotpy
      @hexdotpy 11 місяців тому

      I had the same error. Switching to the 32bit Pi OS appeared to remedy, however.

    • @LadyBathory666
      @LadyBathory666 Місяць тому

      wish i would have read this beforehand, woulda saved me some time

  • @astlerebello7984
    @astlerebello7984 Рік тому

    increase your voice , its soo low and nice video

  • @JohnWickIsAlive
    @JohnWickIsAlive Рік тому

    Hi, are the spreadsheets up to date with any of the course changes? Thank you in advance!

  • @minahiltariq9664
    @minahiltariq9664 Рік тому

    Since WGU is not for international students, so is SNHU worth it?

  • @jerryphlip4487
    @jerryphlip4487 Рік тому

    Great video! I think 10.6.x is slightly different and I get an error when trying to install it. some package is missing.

  • @RobertJames-x6m
    @RobertJames-x6m Рік тому

    Need Advice! I`m 44 years old. I graduated with a Business Degree and have a Masters in Education. I`m teaching for the last 17 yrs, but desperately wanting a career switch into Business/IT Management/Healthcare/Supply Chain career. Should I go straight into the Competency Based learning such as: MBA in IT in WGU or take Competency Fast Track Bachelor`s in Project Management in UMPI or UMASSGlobal? Any suggestion is welcome! Thanks!

  • @Zill-cool1000
    @Zill-cool1000 Рік тому

    I really like your honesty. You're a good man.

  • @mootologist
    @mootologist Рік тому

    Good stuff, man. Qualys’ reports out of the box are awful.