0%
Core Windows Processes
Explore the core processes within a Windows operating system and understand what normal behaviour is. This foundational knowledge will help you identify malicious processes running on an endpoint!
0%
Sysinternals
Learn to use the Sysinternals tools to analyze Windows systems or applications.
0%
Windows Event Logs
Introduction to Windows Event Logs and the tools to query them.
0%
Sysmon
Learn how to utilize Sysmon to monitor and log your endpoints and environments.
0%
Osquery: The Basics
Let's cover the basics of Osquery.
0%
Splunk: The Basics
Understand how SOC analysts use Splunk for log investigations.
0%
Splunk 2
Part of the Blue Primer series. This room is based on version 2 of the Boss of the SOC (BOTS) competition by Splunk.
Topic Rewind Recap
Lock in what you learned with a recap. Earn points and keep your streak.
What are modules?
A learning pathway is made up of modules, and a module is made of bite-sized rooms (think of a room like a mini security lab).




