⤷ Title: LetsDefend — Disclose The Agent Challenge Walkthrough
════════════════════════
𐀪 Author: Drew Arpino
════════════════════════
ⴵ Time: Sun, 14 Sep 2025 17:01:46 GMT
════════════════════════
⌗ Tags: #letsdefendio #cybersecurity #lets_defend #wireshark #blue_team
════════════════════════
𐀪 Author: Drew Arpino
════════════════════════
ⴵ Time: Sun, 14 Sep 2025 17:01:46 GMT
════════════════════════
⌗ Tags: #letsdefendio #cybersecurity #lets_defend #wireshark #blue_team
Medium
LetsDefend — Disclose The Agent Challenge Walkthrough
Investigating a Suspicious Email Using Wireshark.
⤷ Title: LetsDefend — Samba Spy Challenge Walkthrough
════════════════════════
𐀪 Author: Drew Arpino
════════════════════════
ⴵ Time: Sun, 21 Sep 2025 23:02:05 GMT
════════════════════════
⌗ Tags: #blue_team #dfir #letsdefendio #cybersecurity #lets_defend
════════════════════════
𐀪 Author: Drew Arpino
════════════════════════
ⴵ Time: Sun, 21 Sep 2025 23:02:05 GMT
════════════════════════
⌗ Tags: #blue_team #dfir #letsdefendio #cybersecurity #lets_defend
Medium
LetsDefend — Samba Spy Challenge Walkthrough
Investigating a Malicious JAR File Using Java Decompiler, VirusTotal & MITRE ATT&CK.
⤷ Title: Threat Hunting with CTI Walkthrough — LetsDefend
════════════════════════
𐀪 Author: Yusuf Talha ARABACI
════════════════════════
ⴵ Time: Mon, 29 Sep 2025 11:54:10 GMT
════════════════════════
⌗ Tags: #infosec #threat_hunting #writeup #letsdefendio
════════════════════════
𐀪 Author: Yusuf Talha ARABACI
════════════════════════
ⴵ Time: Mon, 29 Sep 2025 11:54:10 GMT
════════════════════════
⌗ Tags: #infosec #threat_hunting #writeup #letsdefendio
Medium
Threat Hunting with CTI Walkthrough — LetsDefend
Cyber Threat Intelligence (CTI) refers to the information collected, evaluated, and analyzed about cyber threats. It includes how, where…
⤷ Title: Threat Hunting with IPS/IDS Walkthrough — LetsDefend
════════════════════════
𐀪 Author: Yusuf Talha ARABACI
════════════════════════
ⴵ Time: Mon, 13 Oct 2025 07:38:48 GMT
════════════════════════
⌗ Tags: #letsdefend_writeup #letsdefendio #cybersecurity #threat_hunting
════════════════════════
𐀪 Author: Yusuf Talha ARABACI
════════════════════════
ⴵ Time: Mon, 13 Oct 2025 07:38:48 GMT
════════════════════════
⌗ Tags: #letsdefend_writeup #letsdefendio #cybersecurity #threat_hunting
Medium
Threat Hunting with IPS/IDS Walkthrough — LetsDefend
Threat hunting is a proactive cybersecurity strategy. Rather than focusing solely on known threats, security teams hunt for advanced and…
⤷ Title: Learn Sigma (LetsDefend)
════════════════════════
𐀪 Author: Brandon Love
════════════════════════
ⴵ Time: Mon, 27 Oct 2025 19:32:47 GMT
════════════════════════
⌗ Tags: #letsdefend_writeup #cybersecurity #letsdefendio
════════════════════════
𐀪 Author: Brandon Love
════════════════════════
ⴵ Time: Mon, 27 Oct 2025 19:32:47 GMT
════════════════════════
⌗ Tags: #letsdefend_writeup #cybersecurity #letsdefendio
Medium
Learn Sigma (LetsDefend)
I will be creating a step-by-step walkthrough for the Learn Sigma Challenge on Let's Defend.
⤷ Title: SOC274 — Palo Alto Networks PAN-OS Command Injection Vulnerability Exploitation (CVE-2024–3400)
════════════════════════
𐀪 Author: Brandon Love
════════════════════════
ⴵ Time: Wed, 29 Oct 2025 01:51:52 GMT
════════════════════════
⌗ Tags: #cybersecurity #blueteamlabs #letsdefendio
════════════════════════
𐀪 Author: Brandon Love
════════════════════════
ⴵ Time: Wed, 29 Oct 2025 01:51:52 GMT
════════════════════════
⌗ Tags: #cybersecurity #blueteamlabs #letsdefendio
Medium
SOC274 — Palo Alto Networks PAN-OS Command Injection Vulnerability Exploitation (CVE-2024–3400)
We are going to dive into the PAN OS Command Injection Vulnerability (CVE-2024–3400). This attack is a command injection resulting from an…
⤷ Title: SOC342 — CVE‑2025‑53770 SharePoint ToolShell Auth Bypass and RCE (LetsDefend)
════════════════════════
𐀪 Author: Brandon Love
════════════════════════
ⴵ Time: Thu, 30 Oct 2025 03:12:08 GMT
════════════════════════
⌗ Tags: #letsdefendio #blue_team #cybersecurity #lets_defend
════════════════════════
𐀪 Author: Brandon Love
════════════════════════
ⴵ Time: Thu, 30 Oct 2025 03:12:08 GMT
════════════════════════
⌗ Tags: #letsdefendio #blue_team #cybersecurity #lets_defend
Medium
SOC342 — CVE‑2025‑53770 SharePoint ToolShell Auth Bypass and RCE (LetsDefend)
Background
⤷ Title: SOC251 — Quishing Detected (QR Code Phishing) (LetsDefend)
════════════════════════
𐀪 Author: Brandon Love
════════════════════════
ⴵ Time: Thu, 30 Oct 2025 18:49:55 GMT
════════════════════════
⌗ Tags: #letsdefendio #lets_defend #cybersecurity #blue_team
════════════════════════
𐀪 Author: Brandon Love
════════════════════════
ⴵ Time: Thu, 30 Oct 2025 18:49:55 GMT
════════════════════════
⌗ Tags: #letsdefendio #lets_defend #cybersecurity #blue_team
Medium
SOC251 — Quishing Detected (QR Code Phishing) (LetsDefend)
Today, I dove into another great SOC Alert from LetsDefend. This alert was triggered by a QR Code Phishing email.
⤷ Title: SOC246 — Forced Authentication Detected (LetsDefend)
════════════════════════
𐀪 Author: Brandon Love
════════════════════════
ⴵ Time: Fri, 31 Oct 2025 19:51:25 GMT
════════════════════════
⌗ Tags: #letsdefend_writeup #blue_team #cybersecurity #letsdefendio
════════════════════════
𐀪 Author: Brandon Love
════════════════════════
ⴵ Time: Fri, 31 Oct 2025 19:51:25 GMT
════════════════════════
⌗ Tags: #letsdefend_writeup #blue_team #cybersecurity #letsdefendio
Medium
SOC246 — Forced Authentication Detected (LetsDefend)
Today, I dove into a Let's LetsDefend SOC Alert that introduced us to Forced Authentication Detected. This was another great practical…
⤷ Title: SOC250 — APT35 HyperScrape Data Exfiltration Tool Detected (LetsDefend)
════════════════════════
𐀪 Author: Brandon Love
════════════════════════
ⴵ Time: Sun, 02 Nov 2025 06:49:03 GMT
════════════════════════
⌗ Tags: #letsdefendio #cybersecurity #blue_team #letsdefend_writeup
════════════════════════
𐀪 Author: Brandon Love
════════════════════════
ⴵ Time: Sun, 02 Nov 2025 06:49:03 GMT
════════════════════════
⌗ Tags: #letsdefendio #cybersecurity #blue_team #letsdefend_writeup
Medium
SOC250 — APT35 HyperScrape Data Exfiltration Tool Detected (LetsDefend)
I just completed another SOC Alert from LetsDefend, and this alert was for HyperScrape Data Ecfiltration Tool Detected. This alert…