Skip to main contentSkip to main content
Room Banner
Back to all walkthroughs
Room Icon

Threat Hunting: Endgame

Premium room

Learn how to hunt and discover suspicious activities indicating actions on objectives.

medium

60 min

7,923

User profile photo.

To access material, start machines and answer questions login.

Threat Hunting: Endgame

In this room, you will learn how to implement the threat hunting process to hunt malicious activities performed in the "Actions on Objectives" phase of the "Cyber Kill Chain". You will also experience the hunting process of commonly used ATT&CK techniques under the collection, exfiltration and impact tactics. The ultimate objective of the room is to teach how to conduct a threat hunting investigation to detect attackers' main objectives in the system.

Learning Objectives

  • Gain applied hands-on threat hunting investigation skills.
  • Familiarise yourself with the "Actions on Objectives" phase.
  • Familiarise yourself with correlating and evaluating artefacts for a hypothesis.
  • Experience the threat hunting process for a defined scope.

Room Prerequisites

Answer the questions below
Read the task above.