Home

Detecting Web Attacks

by: tryhackme, ryla, TactfulTurtle THM links to other rooms per the prerequisites. These rooms cover the most recent update to OWASP! “OWASP Top 10 covers the ten most critical web security risks. Complete Intro to Log Analysis for an overview of logs and…

Web Security Essentials

by: tryhackme, ryla, TactfulTurtle This room covers recent advances in the web and the security defenses and concerns that accompany them. This room is a high-level room and less technical, so I mainly did snippet highlights. In task 6…

Snort

by: tryhackme, Dex01, krotovolb, TactfulTurtle “SNORT is an open-source, rule-based Network Intrusion Detection and Prevention System (NIDS/NIPS). It was developed and still maintained by Martin Roesch, open-source contributors, and the Cisco Talos team.  The official description: “Snort is the…

Data Exfiltration Detection

by: tryhackme, Dex01 There are two software we will be using in this lab: Wireshark and Splunk. In Task 3, THM goes over Data exfiltration and various threat actors and their data exfiltration methods. Pet THM, “Data exfiltration is…

Splunk Exploring SPL

by: tryhackme, Dex01, ryla, Tactful Turtle We get down to business in this lab with Splunk. It’s assumed you’ve done the Splunk basic room and with Task 2, we are tasked with launching our VM and already get a…

Network Discovery Detection

by: tryhackme “What do attackers scan, other than IP addresses, ports, and OS versions, in order to identify vulnerabilities in a network?” Services I used this command to clean up things a little: head log-session-2.csv | cut -d’,’ -f1,2,3,4,5,6,7,8,9,10,11…

Network Security Essentials

by: tryhackme, Dex01 “The networks are the backbone of every modern organization.  Servers, workstations, applications, and security devices don’t exist in isolation; they are interconnected, forming a single ecosystem. The network perimeter is where this internal ecosystem is segregated…

NetworkMiner

by:tryhackme, str3g4tt4, Gensane, TactfulTurtle Per official description, “NetworkMiner is an open source Network Forensic Analysis Tool (NFAT) for Windows (but also works in Linux / Mac OS X / FreeBSD). NetworkMiner can be used as a passive network sniffer/packet capturing tool to detect…

Intro to Log Analysis

by: tryhackme, cmnatic, l000g1c Task 3 highlights: THM links to an open source tool: “Plaso (Python Log2Timeline) is an open-source tool created by Kristinn Gudjonsson and many contributors that automates the creation of timelines from various log sources. It’s…

Log Universe

by: tryhackme, Aashir.Masood THM links to another room in Task 2, , which I plan on starting next up, but this room is recommended before that one. We launch a VM that has an open-source log parser tool(ULogViewer) in…