⤷ Title: LetsDefend Remote Working Challenge Walkthrough
════════════════════════
𐀪 Author: El Mahjoub AIT MEDDAH
════════════════════════
ⴵ Time: Wed, 21 May 2025 21:10:44 GMT
════════════════════════
⌗ Tags: #letsdefend_writeup #remote_work_security #cybersecurity #letsdefendio #soc_analyst
════════════════════════
𐀪 Author: El Mahjoub AIT MEDDAH
════════════════════════
ⴵ Time: Wed, 21 May 2025 21:10:44 GMT
════════════════════════
⌗ Tags: #letsdefend_writeup #remote_work_security #cybersecurity #letsdefendio #soc_analyst
Medium
LetsDefend Remote Working Challenge Walkthrough
Introduction
⤷ Title: SOC165: Decoding a Possible SQL Injection Payload | Let’s Defend
════════════════════════
𐀪 Author: Sohankanna
════════════════════════
ⴵ Time: Mon, 02 Jun 2025 15:55:16 GMT
════════════════════════
⌗ Tags: #letsdefendio #cybersecurity #letsdefend_writeup #sql_injection
════════════════════════
𐀪 Author: Sohankanna
════════════════════════
ⴵ Time: Mon, 02 Jun 2025 15:55:16 GMT
════════════════════════
⌗ Tags: #letsdefendio #cybersecurity #letsdefend_writeup #sql_injection
Medium
SOC165: Decoding a Possible SQL Injection Payload | Let’s Defend
On February 25, 2022, the Security Operations Center (SOC) identified a suspicious URL request targeting webserver1001 (IP: 172.16.17.18)…
⤷ Title: SOC163 — Suspicious Certutil.exe Usage
════════════════════════
𐀪 Author: Raynard Waits
════════════════════════
ⴵ Time: Sun, 29 Jun 2025 15:09:14 GMT
════════════════════════
⌗ Tags: #lets_defend #cybersecurity #letsdefend_writeup #infosec #soc_analyst_training
════════════════════════
𐀪 Author: Raynard Waits
════════════════════════
ⴵ Time: Sun, 29 Jun 2025 15:09:14 GMT
════════════════════════
⌗ Tags: #lets_defend #cybersecurity #letsdefend_writeup #infosec #soc_analyst_training
Medium
SOC163 — Suspicious Certutil.exe Usage
Today we are looking into an alert in the investigation main channel.
⤷ Title: Investigating a VoIP Vishing Attack: A LetsDefend Blue Team Walkthrough
════════════════════════
𐀪 Author: Pranav
════════════════════════
ⴵ Time: Sun, 10 Aug 2025 15:38:49 GMT
════════════════════════
⌗ Tags: #blueteamlabs #cybersecurity #digital_forensics #letsdefend_writeup
════════════════════════
𐀪 Author: Pranav
════════════════════════
ⴵ Time: Sun, 10 Aug 2025 15:38:49 GMT
════════════════════════
⌗ Tags: #blueteamlabs #cybersecurity #digital_forensics #letsdefend_writeup
Medium
Investigating a VoIP Vishing Attack: A LetsDefend Blue Team Walkthrough
Introduction:
James has received a suspicious VoIP call from an adversary disguising as a bank and trying to receive information about…
James has received a suspicious VoIP call from an adversary disguising as a bank and trying to receive information about…
⤷ Title: SOC140 — Phishing Mail Detected — Suspicious Task Scheduler
════════════════════════
𐀪 Author: TH3LILJ4NN47
════════════════════════
ⴵ Time: Sun, 17 Aug 2025 21:18:00 GMT
════════════════════════
⌗ Tags: #defensive_security #soc_analyst #cybersecurity #letsdefend_writeup #learning
════════════════════════
𐀪 Author: TH3LILJ4NN47
════════════════════════
ⴵ Time: Sun, 17 Aug 2025 21:18:00 GMT
════════════════════════
⌗ Tags: #defensive_security #soc_analyst #cybersecurity #letsdefend_writeup #learning
Medium
SOC140 — Phishing Mail Detected — Suspicious Task Scheduler
A walkthrough of Letsdefend’s SOC 140 Challenge
⤷ Title: Cyber Threat Intelligence — Letsdefend
════════════════════════
𐀪 Author: HoangdhPtit
════════════════════════
ⴵ Time: Thu, 04 Sep 2025 11:47:03 GMT
════════════════════════
⌗ Tags: #cybersecurity #letsdefend_writeup
════════════════════════
𐀪 Author: HoangdhPtit
════════════════════════
ⴵ Time: Thu, 04 Sep 2025 11:47:03 GMT
════════════════════════
⌗ Tags: #cybersecurity #letsdefend_writeup
Medium
Cyber Threat Intelligence — Letsdefend
Introduction to CTI
⤷ Title: LetsDefend SOC Alerts | SOC 136- Event ID: 74 Walkthrough
════════════════════════
𐀪 Author: Alex Idicula Mathews
════════════════════════
ⴵ Time: Sun, 05 Oct 2025 07:07:33 GMT
════════════════════════
⌗ Tags: #blue_team #soc_analyst_training #lets_defend #cybersecurity #letsdefend_writeup
════════════════════════
𐀪 Author: Alex Idicula Mathews
════════════════════════
ⴵ Time: Sun, 05 Oct 2025 07:07:33 GMT
════════════════════════
⌗ Tags: #blue_team #soc_analyst_training #lets_defend #cybersecurity #letsdefend_writeup
Medium
LetsDefend SOC Alerts | SOC 136- Event ID: 74 Walkthrough
Greetings readers, to yet another SOC Alert walk-through from LetsDefend.
⤷ Title: Threat Hunting with IPS/IDS Walkthrough — LetsDefend
════════════════════════
𐀪 Author: Yusuf Talha ARABACI
════════════════════════
ⴵ Time: Mon, 13 Oct 2025 07:38:48 GMT
════════════════════════
⌗ Tags: #letsdefend_writeup #letsdefendio #cybersecurity #threat_hunting
════════════════════════
𐀪 Author: Yusuf Talha ARABACI
════════════════════════
ⴵ Time: Mon, 13 Oct 2025 07:38:48 GMT
════════════════════════
⌗ Tags: #letsdefend_writeup #letsdefendio #cybersecurity #threat_hunting
Medium
Threat Hunting with IPS/IDS Walkthrough — LetsDefend
Threat hunting is a proactive cybersecurity strategy. Rather than focusing solely on known threats, security teams hunt for advanced and…
⤷ Title: Learn Sigma (LetsDefend)
════════════════════════
𐀪 Author: Brandon Love
════════════════════════
ⴵ Time: Mon, 27 Oct 2025 19:32:47 GMT
════════════════════════
⌗ Tags: #letsdefend_writeup #cybersecurity #letsdefendio
════════════════════════
𐀪 Author: Brandon Love
════════════════════════
ⴵ Time: Mon, 27 Oct 2025 19:32:47 GMT
════════════════════════
⌗ Tags: #letsdefend_writeup #cybersecurity #letsdefendio
Medium
Learn Sigma (LetsDefend)
I will be creating a step-by-step walkthrough for the Learn Sigma Challenge on Let's Defend.
⤷ Title: SOC246 — Forced Authentication Detected (LetsDefend)
════════════════════════
𐀪 Author: Brandon Love
════════════════════════
ⴵ Time: Fri, 31 Oct 2025 19:51:25 GMT
════════════════════════
⌗ Tags: #letsdefend_writeup #blue_team #cybersecurity #letsdefendio
════════════════════════
𐀪 Author: Brandon Love
════════════════════════
ⴵ Time: Fri, 31 Oct 2025 19:51:25 GMT
════════════════════════
⌗ Tags: #letsdefend_writeup #blue_team #cybersecurity #letsdefendio
Medium
SOC246 — Forced Authentication Detected (LetsDefend)
Today, I dove into a Let's LetsDefend SOC Alert that introduced us to Forced Authentication Detected. This was another great practical…
⤷ Title: SOC250 — APT35 HyperScrape Data Exfiltration Tool Detected (LetsDefend)
════════════════════════
𐀪 Author: Brandon Love
════════════════════════
ⴵ Time: Sun, 02 Nov 2025 06:49:03 GMT
════════════════════════
⌗ Tags: #letsdefendio #cybersecurity #blue_team #letsdefend_writeup
════════════════════════
𐀪 Author: Brandon Love
════════════════════════
ⴵ Time: Sun, 02 Nov 2025 06:49:03 GMT
════════════════════════
⌗ Tags: #letsdefendio #cybersecurity #blue_team #letsdefend_writeup
Medium
SOC250 — APT35 HyperScrape Data Exfiltration Tool Detected (LetsDefend)
I just completed another SOC Alert from LetsDefend, and this alert was for HyperScrape Data Ecfiltration Tool Detected. This alert…
⤷ Title: LetsDefend Walkthrough | SOC343 — WinRAR Zero-Day Path Traversal Vulnerability (CVE‑2025‑8088)
════════════════════════
𐀪 Author: Mehmetfiliz
════════════════════════
ⴵ Time: Sun, 09 Nov 2025 12:48:44 GMT
════════════════════════
⌗ Tags: #information_security #letsdefend_writeup #cyber_security_awareness #cybersecurity
════════════════════════
𐀪 Author: Mehmetfiliz
════════════════════════
ⴵ Time: Sun, 09 Nov 2025 12:48:44 GMT
════════════════════════
⌗ Tags: #information_security #letsdefend_writeup #cyber_security_awareness #cybersecurity
Medium
LetsDefend Walkthrough | SOC343 — WinRAR Zero-Day Path Traversal Vulnerability (CVE‑2025‑8088)
Bu yazımızda aktif kullandığımız ürünlerin güncellenmelerini kontrol etmemiz gerektiğini göreceğiz. Path traversal açığıyla alakalı güncel…
⤷ Title: Investigating Letsdefend’s SOC140 — Phishing Mail Detected — Suspicious Task Scheduler (Event ID…
════════════════════════
𐀪 Author: Faree
════════════════════════
ⴵ Time: Mon, 17 Nov 2025 21:26:44 GMT
════════════════════════
⌗ Tags: #phishing_analysis #cybersecurity #letsdefend_writeup #soc_analyst_training
════════════════════════
𐀪 Author: Faree
════════════════════════
ⴵ Time: Mon, 17 Nov 2025 21:26:44 GMT
════════════════════════
⌗ Tags: #phishing_analysis #cybersecurity #letsdefend_writeup #soc_analyst_training
Medium
Investigating Letsdefend’s SOC140 — Phishing Mail Detected — Suspicious Task Scheduler (Event ID…
The first thing to be done in the course of this investigation is to create a case for the event.