Defensive Security · beginner

Defensive Security

Detection and incident-response foundations.

Browse the complete path below. Sign in when you start a room to save progress and earn XP.

  1. 01 · available

    Linux Event Logs

    Investigate fictional Linux authentication and system events while separating observations from conclusions.

    No prerequisites

    View room
  2. 02 · available

    System Logs & Troubleshooting

    Practice an evidence-driven troubleshooting workflow against fictional services and logs.

    Prerequisites: Linux Event Logs

    View room
  3. 03 · available

    SSH Brute-Force Detection

    Detect and document repeated fictional SSH authentication failures without attempting access.

    Prerequisites: System Logs & Troubleshooting

    View room
  4. 04 · available

    SOC Alert Triage

    Validate, contextualize, prioritize, document, and disposition fictional security alerts.

    Prerequisites: SSH Brute-Force Detection

    View room
  5. 05 · available

    Phishing Email Triage

    Inspect fictional email metadata and content safely, correlate indicators, and document an evidence-based classification.

    Prerequisites: SOC Alert Triage

    View room