⤷ Title: Building a Mini SOC Research Testbed- My Journey into Security Telemetry
════════════════════════
𐀪 Author: Ahsan
════════════════════════
ⴵ Time: Fri, 05 Dec 2025 22:28:03 GMT
════════════════════════
⌗ Tags: #security_engineering #detection_engineering #cybersecurity #blue_team
════════════════════════
𐀪 Author: Ahsan
════════════════════════
ⴵ Time: Fri, 05 Dec 2025 22:28:03 GMT
════════════════════════
⌗ Tags: #security_engineering #detection_engineering #cybersecurity #blue_team
Medium
Building a Mini SOC Research Testbed- My Journey into Security Telemetry
How I’m building a small-scale SOC lab using Wazuh, Zeek to explore alert correlation
⤷ Title: Active Directory Attack Simulation and AI-Assisted Threat Detection with Popular SIEM Tools-Part 4
════════════════════════
𐀪 Author: Robert Onyango
════════════════════════
ⴵ Time: Wed, 17 Dec 2025 15:01:00 GMT
════════════════════════
⌗ Tags: #detection_engineering #penetration_testing #active_directory #artificial_intelligence #threat_detection
════════════════════════
𐀪 Author: Robert Onyango
════════════════════════
ⴵ Time: Wed, 17 Dec 2025 15:01:00 GMT
════════════════════════
⌗ Tags: #detection_engineering #penetration_testing #active_directory #artificial_intelligence #threat_detection
Medium
Active Directory Attack Simulation and AI-Assisted Threat Detection with Popular SIEM Tools-Part 4
SMB Relay Attack
⤷ Title: From Breaking Scripts to Understanding Systems: My Early Lessons in Cybersecurity
════════════════════════
𐀪 Author: Sujhal Gurav
════════════════════════
ⴵ Time: Thu, 25 Dec 2025 17:18:13 GMT
════════════════════════
⌗ Tags: #detection_engineering #purple_team #security_research #ethical_hacking #cybersecurity
════════════════════════
𐀪 Author: Sujhal Gurav
════════════════════════
ⴵ Time: Thu, 25 Dec 2025 17:18:13 GMT
════════════════════════
⌗ Tags: #detection_engineering #purple_team #security_research #ethical_hacking #cybersecurity
Medium
From Breaking Scripts to Understanding Systems: My Early Lessons in Cybersecurity
This is my first Medium post.
⤷ Title: Detection Rule Fragility: Design Pitfalls Every Detection Engineer Must Know
════════════════════════
𐀪 Author: SOCLabs
════════════════════════
ⴵ Time: Sun, 04 Jan 2026 11:44:39 GMT
════════════════════════
⌗ Tags: #blue_team #infosec #threat_detection #cybersecurity #detection_engineering
════════════════════════
𐀪 Author: SOCLabs
════════════════════════
ⴵ Time: Sun, 04 Jan 2026 11:44:39 GMT
════════════════════════
⌗ Tags: #blue_team #infosec #threat_detection #cybersecurity #detection_engineering
Medium
Detection Rule Fragility: Design Pitfalls Every Detection Engineer Must Know
In a modern security defense stack, Detection Engineering is a critical capability. For many new security analysts, writing detection rules…
⤷ Title: From Pentest Findings to Falsifiable, Reproducible Proof
════════════════════════
𐀪 Author: Andreas
════════════════════════
ⴵ Time: Sun, 11 Jan 2026 10:09:16 GMT
════════════════════════
⌗ Tags: #automation_security #detection_engineering #application_security #pentesting
════════════════════════
𐀪 Author: Andreas
════════════════════════
ⴵ Time: Sun, 11 Jan 2026 10:09:16 GMT
════════════════════════
⌗ Tags: #automation_security #detection_engineering #application_security #pentesting
Medium
From Pentest Findings to Falsifiable, Reproducible Proof
Nuclei Templates as Detection Engineering, across pentest and threat-model assumptions
⤷ Title: Detection Engineering: The Skill Nobody Teaches You
════════════════════════
𐀪 Author: Paritosh
════════════════════════
ⴵ Time: Mon, 02 Feb 2026 06:55:39 GMT
════════════════════════
⌗ Tags: #cybersecurity #hacking #threat_hunting #detection_engineering #ai
════════════════════════
𐀪 Author: Paritosh
════════════════════════
ⴵ Time: Mon, 02 Feb 2026 06:55:39 GMT
════════════════════════
⌗ Tags: #cybersecurity #hacking #threat_hunting #detection_engineering #ai
Medium
Detection Engineering: The Skill Nobody Teaches You
Why modern security fails silently — and how building better detections actually changes outcomes.
⤷ Title: Detection Logic Bugs: Abusable Gaps in Detection Coverage
════════════════════════
𐀪 Author: Nikolas Bielski
════════════════════════
ⴵ Time: Fri, 13 Mar 2026 07:05:04 GMT
════════════════════════
⌗ Tags: #threat_hunting #cloud_security #detection_engineering #hacking #information_security
════════════════════════
𐀪 Author: Nikolas Bielski
════════════════════════
ⴵ Time: Fri, 13 Mar 2026 07:05:04 GMT
════════════════════════
⌗ Tags: #threat_hunting #cloud_security #detection_engineering #hacking #information_security
Medium
Detection Logic Bugs: Abusable Gaps in Detection Coverage
Detection Logic Bugs exist everywhere. Practitioners are starting to wake up. Vendor “100% Coverage” claims have a fallacy that leaves you…
⤷ Title: SigHunt — TryHackMe
════════════════════════
𐀪 Author: Nway Nway Zay Ya
════════════════════════
ⴵ Time: Fri, 17 Apr 2026 11:55:40 GMT
════════════════════════
⌗ Tags: #detection_engineering #tryhackme_walkthrough #tryhackme #cybersecurity #writeup
════════════════════════
𐀪 Author: Nway Nway Zay Ya
════════════════════════
ⴵ Time: Fri, 17 Apr 2026 11:55:40 GMT
════════════════════════
⌗ Tags: #detection_engineering #tryhackme_walkthrough #tryhackme #cybersecurity #writeup
Medium
SigHunt — TryHackMe
This is my walkthrough for SigHunt, a premium room from TryHackMe, part of the Detection Engineering module and SOC Level 2 learning path.
⤷ Title: Inside the Protocol: Master Kerberos Defense and Detection with Kerlab’s Rust Toolkit
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 27 Apr 2026 15:28:47 +0000
════════════════════════
⌗ Tags: #Open Source Tool #brute_force #Cyber Security 2026 #Detection Engineering #InfoSec Tool #Kerberos #Kerlab #Mimikatz #password spraying #Rubeus #Rust #TGS #TGT
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 27 Apr 2026 15:28:47 +0000
════════════════════════
⌗ Tags: #Open Source Tool #brute_force #Cyber Security 2026 #Detection Engineering #InfoSec Tool #Kerberos #Kerlab #Mimikatz #password spraying #Rubeus #Rust #TGS #TGT
Penetration Testing Tools
Inside the Protocol: Master Kerberos Defense and Detection with Kerlab’s Rust Toolkit
Explore Kerlab: A high-performance Rust tool for mastering Kerberos. From TGT/TGS requests to brute-forcing, build better detection rules with hands-on labs.
⤷ Title: The Autonomous Blue Team: Build a Self-Healing SIEM with the AI Detection Engineering Lab
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 08 May 2026 09:13:19 +0000
════════════════════════
⌗ Tags: #Open Source Tool #AI security #Blue Team Automation #Claude Code #Detection Engineering #DevSecOps #Elastic Security #Fawkes C2 #MITRE ATT&CK #SIEM #Sigma Rules #Splunk #Threat Intel
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 08 May 2026 09:13:19 +0000
════════════════════════
⌗ Tags: #Open Source Tool #AI security #Blue Team Automation #Claude Code #Detection Engineering #DevSecOps #Elastic Security #Fawkes C2 #MITRE ATT&CK #SIEM #Sigma Rules #Splunk #Threat Intel
Penetration Testing Tools
The Autonomous Blue Team: Build a Self-Healing SIEM with the AI Detection Engineering Lab
Deploy an AI-powered detection pipeline using Claude Code. Automate the full SIEM lifecycle, from Sigma rule authoring to MITRE ATT&CK validation and tuning.
⤷ Title: Catching APT29 staging malware in 197k+ Sysmon events (and why your detection rule misses it)
════════════════════════
𐀪 Author: Manish Rawat
════════════════════════
ⴵ Time: Tue, 12 May 2026 12:01:01 GMT
════════════════════════
⌗ Tags: #infosec #blue_team #cybersecurity #threat_hunting #detection_engineering
════════════════════════
𐀪 Author: Manish Rawat
════════════════════════
ⴵ Time: Tue, 12 May 2026 12:01:01 GMT
════════════════════════
⌗ Tags: #infosec #blue_team #cybersecurity #threat_hunting #detection_engineering
Medium
Catching APT29 staging malware in 197k+ Sysmon events (and why your detection rule misses it)
Most SOC teams only watch process creation. I watch what processes load.
⤷ Title: Intro to Detection Engineering (THM) Tryhackme Walkthrough
════════════════════════
𐀪 Author: Lawvye
════════════════════════
ⴵ Time: Wed, 27 May 2026 03:33:13 GMT
════════════════════════
⌗ Tags: #blue_team #cybersecurity #tryhackme #hacking #detection_engineering
════════════════════════
𐀪 Author: Lawvye
════════════════════════
ⴵ Time: Wed, 27 May 2026 03:33:13 GMT
════════════════════════
⌗ Tags: #blue_team #cybersecurity #tryhackme #hacking #detection_engineering
Medium
Intro to Detection Engineering (THM) Tryhackme Walkthrough
Description : Learn what Detection Engineering is, how it works in a SOC, and the mindset required to build effective detections.
⤷ Title: Intro to Detection Engineering — THM WriteUp
════════════════════════
𐀪 Author: Sumit Shrestha
════════════════════════
ⴵ Time: Thu, 28 May 2026 15:35:52 GMT
════════════════════════
⌗ Tags: #tryhackme_walkthrough #tryhackme_writeup #detection_engineering #tryhackme #thm_writeup
════════════════════════
𐀪 Author: Sumit Shrestha
════════════════════════
ⴵ Time: Thu, 28 May 2026 15:35:52 GMT
════════════════════════
⌗ Tags: #tryhackme_walkthrough #tryhackme_writeup #detection_engineering #tryhackme #thm_writeup
Medium
Intro to Detection Engineering — THM WriteUp
Task 1: Introduction
⤷ Title: FortiClient EMS Was Turned Into a Malware Delivery System.
════════════════════════
𐀪 Author: Isaac Privett
════════════════════════
ⴵ Time: Fri, 29 May 2026 17:46:00 GMT
════════════════════════
⌗ Tags: #endpoint_security #detection_engineering #red_team #cybersecurity #penetration_testing
════════════════════════
𐀪 Author: Isaac Privett
════════════════════════
ⴵ Time: Fri, 29 May 2026 17:46:00 GMT
════════════════════════
⌗ Tags: #endpoint_security #detection_engineering #red_team #cybersecurity #penetration_testing
Medium
FortiClient EMS Was Turned Into a Malware Delivery System.
CVE-2026–35616 shows why endpoint management servers are not just admin consoles. They are fleet-wide execution platforms, and attackers…
⤷ Title: Intro to Detection Engineering (Refresh Ver.) Walkthrough Notes | TryHackMe
════════════════════════
𐀪 Author: Sle3pyHead
════════════════════════
ⴵ Time: Mon, 01 Jun 2026 10:19:17 GMT
════════════════════════
⌗ Tags: #tryhackme_writeup #tryhackme #cybersecurity #detection_engineering #tryhackme_walkthrough
════════════════════════
𐀪 Author: Sle3pyHead
════════════════════════
ⴵ Time: Mon, 01 Jun 2026 10:19:17 GMT
════════════════════════
⌗ Tags: #tryhackme_writeup #tryhackme #cybersecurity #detection_engineering #tryhackme_walkthrough
Medium
Intro to Detection Engineering (Refresh Ver.) Walkthrough Notes | TryHackMe
Learn detection engineering basics through practical concepts and security monitoring workflows.
⤷ Title: My First Steps in Purple Teaming with Atomic Red Team
════════════════════════
𐀪 Author: Boutros
════════════════════════
ⴵ Time: Thu, 11 Jun 2026 10:49:02 GMT
════════════════════════
⌗ Tags: #cybersecurity #mitre_attack #detection_engineering #purple_team #ethical_hacking
════════════════════════
𐀪 Author: Boutros
════════════════════════
ⴵ Time: Thu, 11 Jun 2026 10:49:02 GMT
════════════════════════
⌗ Tags: #cybersecurity #mitre_attack #detection_engineering #purple_team #ethical_hacking
Medium
My First Steps in Purple Teaming with Atomic Red Team
I just started a deep dive journey into Purple Teaming after finishing my four first years of engineering school. The first and main topic…
⤷ Title: How a Single KQL Query Stopped an Entire EvilTokens Phishing Campaign
════════════════════════
𐀪 Author: Matt Swann
════════════════════════
ⴵ Time: Thu, 11 Jun 2026 21:29:58 GMT
════════════════════════
⌗ Tags: #detection_engineering #infosec #eviltokens #phishing #cybersecurity
════════════════════════
𐀪 Author: Matt Swann
════════════════════════
ⴵ Time: Thu, 11 Jun 2026 21:29:58 GMT
════════════════════════
⌗ Tags: #detection_engineering #infosec #eviltokens #phishing #cybersecurity
Medium
How a Single KQL Query Stopped an Entire EvilTokens Phishing Campaign
Back in April of this year, an AI-powered phishing campaign known as EvilTokens took the spotlight in the infosec world. While the term…