Загрузка...

TryHackMe Challenge: Volt Typhoon (Splunk Walkthrough)

In this video, we’ll walk through the TryHackMe challenge “Volt Typhoon”, investigating a suspected intrusion linked to the notorious APT group. We’ll approach the lab from a real SOC analyst perspective, analyzing logs, identifying attacker activity, and following the evidence step by step to understand how advanced persistent threats operate. Throughout the walkthrough, we’ll focus on detection, investigation methodology, and how defenders can spot stealthy, long-term intrusions in a real-world environment.

Timecodes
0:00 - Intro
1:10 - Initial Access, first question
4:14 - Initial Access, second question
7:20 - Execution, first question
9:05 - Execution, second question
13:52 - Persistence
18:09 - Defense Evasion, first question
20:32 - Defense Evasion, second question
22:34 - Defense Evasion, third question
24:01 - Credential Access, first question
26:11 - Credential Access, second question
28:33 - Discovery & Lateral Movement, first question
30:55 - Discovery & Lateral Movement, second question
33:07 - Collection
35:12 - C2 & Cleanup, first question
36:24 - C2 & Cleanup, second question
40:54 - Outro

Видео TryHackMe Challenge: Volt Typhoon (Splunk Walkthrough) канала Davide Battilocchio SOC
Яндекс.Метрика
Все заметки Новая заметка Страницу в заметки
Страницу в закладки Мои закладки
На информационно-развлекательном портале SALDA.WS применяются cookie-файлы. Нажимая кнопку Принять, вы подтверждаете свое согласие на их использование.
О CookiesНапомнить позжеПринять