Defensive Security · beginner
Defensive Security
Detection and incident-response foundations.
Browse the complete path below. Sign in when you start a room to save progress and earn XP.
- View room
01 · available
Linux Event Logs
Investigate fictional Linux authentication and system events while separating observations from conclusions.
No prerequisites
- View room
02 · available
System Logs & Troubleshooting
Practice an evidence-driven troubleshooting workflow against fictional services and logs.
Prerequisites: Linux Event Logs
- View room
03 · available
SSH Brute-Force Detection
Detect and document repeated fictional SSH authentication failures without attempting access.
Prerequisites: System Logs & Troubleshooting
- View room
04 · available
SOC Alert Triage
Validate, contextualize, prioritize, document, and disposition fictional security alerts.
Prerequisites: SSH Brute-Force Detection
- View room
05 · available
Phishing Email Triage
Inspect fictional email metadata and content safely, correlate indicators, and document an evidence-based classification.
Prerequisites: SOC Alert Triage