A 30-day hands-on SOC Analyst project simulating real-world cyber attacks using ELK Stack, Mythic C2, osTicket & Elastic Defend. Covers threat detection, log analysis, incident response, and cloud-based SOC setup to bridge academic theory with practical cybersecurity skills.
☆41Jun 10, 2025Updated 8 months ago
Alternatives and similar repositories for 30-Day-SOC-Analyst-Challenge
Users that are interested in 30-Day-SOC-Analyst-Challenge are comparing it to the libraries listed below
Sorting:
- Menu for Thor scanner lite☆20Oct 24, 2025Updated 4 months ago
- MISP to Microsoft Defender integration☆17Feb 24, 2026Updated last week
- Rulezet is an open-source web platform for sharing, evaluating, improving, and managing cybersecurity detection rules (YARA, Sigma, Suric…☆42Updated this week
- Pipeline that allows sending forensic artifacts to OpenRelik for automatic processing☆40Jan 30, 2026Updated last month
- ☆61Jun 18, 2025Updated 8 months ago
- This is a webshell fingerprinting scanner designed to identify implants on Cisco IOS XE WebUI's affected by CVE-2023-20198 and CVE-2023-2…☆33Oct 24, 2023Updated 2 years ago
- ☆12Oct 9, 2022Updated 3 years ago
- A collection of Script for Red Team & Incidence Response☆11Jun 30, 2022Updated 3 years ago
- A Docker lab integrating Splunk SIEM with Ollama LLM via MCP for AI security operations. Features Promptfoo OWASP evaluation, TA-ollama a…☆18Updated this week
- This repository provide a json file for all Windows security Event IDs with lot of useful informations (Categories, GPO, Volume, Recomman…☆11Mar 2, 2023Updated 3 years ago
- Reflex SOAR☆12Apr 1, 2022Updated 3 years ago
- ☆22Aug 16, 2025Updated 6 months ago
- ☆12Oct 15, 2024Updated last year
- Azure apim mini proxy☆45Feb 16, 2026Updated 3 weeks ago
- Open-source pedestal frame design files for cockpit build.☆35Feb 11, 2026Updated 3 weeks ago
- ETW-Almulahaza is a consumer python-based tool that help you monitor ETW events of the operating system☆13Jun 24, 2022Updated 3 years ago
- Scripts to for ready-to-use Velociraptor instance deployment in Azure☆14Jun 27, 2023Updated 2 years ago
- Free Windows privilege escalation lab inspired by HTB Devel, built for PNPT and OSCP practice.☆23Jan 13, 2026Updated last month
- Basic raw packet sniffer in Python - Cybrary☆12Nov 21, 2017Updated 8 years ago
- ☆14Dec 24, 2024Updated last year
- Python3 script to quickly get various information from a domain controller through his LDAP service.☆11Feb 23, 2022Updated 4 years ago
- Hackers Cookbook - Tons of hacker cli recipes ready to search and use when you need them☆39Nov 30, 2025Updated 3 months ago
- Instructions for hacking and cloning RFID cards☆19Nov 28, 2023Updated 2 years ago
- A public collection of detections designed to detect threats associated with the Okta WIC Platform.☆20Jan 5, 2026Updated 2 months ago
- A package to create HTML MISP reports, including volume of trending events and attributes, evens received from key organisations and targ…☆11Aug 14, 2025Updated 6 months ago
- Host Internal Static Website on AWS☆17Dec 6, 2023Updated 2 years ago
- IP address filter by City☆12Jan 17, 2025Updated last year
- The Microsoft Student Security Operations Center (SOC) Toolkit is designed to equip facilitators with everything needed to prepare high s…☆20Jul 1, 2025Updated 8 months ago
- 🐻❄️ 🏹 Threat hunting with Polars and flaws.cloud AWS CloudTrail datasets.☆14May 22, 2024Updated last year
- This is for my crappy (but hopefully useful) MDE and Sentinel KQL queries! #KQLThePlanet☆13Jan 24, 2026Updated last month
- ☆18Jul 30, 2024Updated last year
- ☆18May 6, 2023Updated 2 years ago
- Notes from my "Implementing a Kick-Butt Training Program: Blue Team GO!" talk☆14Mar 4, 2019Updated 7 years ago
- Automated Cloud Misconfiguration Testing☆22Jun 20, 2025Updated 8 months ago
- Windows Projected File System for Python☆13Jul 31, 2022Updated 3 years ago
- A PowerShell-based script to analyze network logs from CSV files and detect potential beaconing behavior. Supports VirusTotal integration…☆17May 11, 2025Updated 9 months ago
- Knowing which rule should trigger according to the redcannary test☆11Nov 23, 2024Updated last year
- Powershell Based tool for gathering information related to O365 intrusions and potential Breaches☆17Dec 29, 2024Updated last year
- TACOS framework structural details☆20May 12, 2025Updated 9 months ago