Investigating Cerber Ransomware with Splunk | TryHackMe Boss of the SOC V1
2
Hunting Advanced Persistent Threat APT with Splunk | TryHackMe Boss of the SOC V1
3
Introduction to Splunk For Cyber Security | TryHackMe Splunk 101
4
Web Activity Investigation with Splunk | TryHackMe Splunk 2 Boss of the SOC V2
5
Detecting SQL and XSS Web Application Attacks with Splunk | TryHackMe Splunk 2
6
USB Attacks Investigation with Splunk | TryHackMe Splunk 2 Boss of the SOC v2
7
Investigating FTP with Splunk | TryHackMe Boss of the SOC v2
8
Investigating Amazon Web Service Cloud Events with Splunk | TryHackMe Splunk3
9
Crypto Miners Investigation with Splunk | TryHackMe Splunk3
10
Investigating Authentication Events in Amazon Web Service with Splunk | TryHackMe
11
Investigating Microsoft Office Macro Malware Events with Splunk | TryHackMe Splunk 3
12
Investigating Compromised Machines with Splunk | TryHackMe Splunk3
13
Investigating Conti Ransomware on Microsoft Exchange with Splunk | TryHackMe
Description:
Dive into a comprehensive 7-hour tutorial series on Splunk SIEM for incident response, log management, threat hunting, and blue team operations. Learn to investigate various cyber threats including Cerber ransomware, advanced persistent threats (APTs), web application attacks like SQL injection and XSS, USB attacks, FTP vulnerabilities, and crypto miners. Explore how to leverage Splunk for analyzing Amazon Web Services (AWS) cloud events, authentication logs, and Microsoft Office macro malware. Gain practical experience with hands-on exercises from TryHackMe's Boss of the SOC challenges, covering topics such as web activity investigation, cloud security, and ransomware analysis, including a focus on Conti ransomware targeting Microsoft Exchange servers.