FalconEye

FalconEye is a blue team lab that falls under the Threat Hunting category and will cover the following subjects: Splunk, Reconnaissance, Persistence, Privilege Escalation, Defense Evasion, Credential Access, Lateral Movement, Command and Control.

Learning Objectives

Learn to use Splunk for detecting, analyzing, and investigating cybersecurity threats through log analysis, threat hunting, privilege escalation, lateral movement, and advanced attack techniques.

Categories: Threat Hunting.

MITRE ATT&CK Tactics: Reconnaissance, Persistence, Privilege Escalation, Defense Evasion, Credential Access, Lateral Movement, Command and Control.

Tools: Splunk.

Difficulty: medium.