Sigma 101

Sigma 101 is a blue team lab that falls under the Detection Engineering category and will cover the following subjects: Sigma, Execution, Privilege Escalation, Defense Evasion.

Learning Objectives

Analyze suspicious logs to author custom Sigma rules that detect lateral movement techniques within a SIEM environment.

Categories: Detection Engineering.

MITRE ATT&CK Tactics: Execution, Privilege Escalation, Defense Evasion.

Tools: Sigma.

Difficulty: medium.