Detection and Analysis (TryHackMe)
Link to the challenge on TryHackMe: Detection and Analysis Introduction Detection and Analysis on TryHackMe puts you in the seat of an incident responder investigating a suspected business email compr

Search for a command to run...
Articles tagged with #soc-analyst
Link to the challenge on TryHackMe: Detection and Analysis Introduction Detection and Analysis on TryHackMe puts you in the seat of an incident responder investigating a suspected business email compr

Link to the walkthrough on TryHackMe: Preparation Introduction The Preparation phase is the foundation of every effective incident response capability. Before an organization can detect, contain, or r

Link to the Challenge on TryHackMe: The Blue Team Perspective index=botsv1 | stats count by sourcetype index=botsv1 sourcetype=fgt_utm subtype=ips | stats count by srcip | sort -count | head 1 i

Just another day in the SOC often begins with an unexpected alert — this time, a suspicious email reported by a Sales Executive at Greenholt PLC. The email contained unusual language, an unexpected reference to a money transfer, and an unsolicited at...

In this article, I will write a Summit Challenge write-up. For a better understanding of this room, you can refer to the Medium article. Objective After participating in one too many incident response activities, PicoSecure has decided to conduct a...

In this article, I will write a Pyramid of Pain write-up: The Basics that covers Hash Values, IP Addresses, Domain Names, Host Artifacts, Network Artifacts, Tools, TTPs, and a Practical of the Pyramid of Pain. Analyse the report associated with the ...
