Boss Of The SOC v2

Boss Of The SOC v2 is a blue team lab that falls under the Threat Hunting category and will cover the following subjects: Splunk, Reconnaissance, Initial Access, Execution, Persistence, Privilege Escalation, Defense Evasion, Credential Access, Lateral Movement, Collection, Command and Control, Exfiltration, Impact.

Learning Objectives

Apply Attack-Based Hunting methodology using Splunk to analyze and correlate diverse network and host logs, identifying multiple distinct cyberattack scenarios.

Categories: Threat Hunting.

MITRE ATT&CK Tactics: Reconnaissance, Initial Access, Execution, Persistence, Privilege Escalation, Defense Evasion, Credential Access, Lateral Movement, Collection, Command and Control, Exfiltration, Impact.

Tools: Splunk.

Difficulty: hard.