In this video, I walk through the entire creation of the SOC Analyst home lab by Eric Capuano.
https://blog.ecapuano.com/p/so-you-want-to-be-a-soc-analyst-intro
Every mouse click, screen, configuration, etc. You can follow this video to build the lab.
📒 Show Notes 📒
⏰ Markers
1:22 Erics Blog Post So You want to be a soc analyst
1:25 Virtual Machine Setup
1:35 VMWare Install
2:12 Ubuntu (Attacker) Machine vm install
4:06 Windows (Victim) Machine vm install
4:27 VMWare error requested power operation is already in progress and powershell fix
4:47 Removing security defenses from Windows VM
5:16 Windows VM defense removal: Turning off Virus and Threat Protection
6:15 Windows VM defense removal: Group Policy Editor
8:01 Windows VM defense removal: Disabling power configurations
10:03 Windows VM defense removal: Safe Boot
11:29 Windows VM defense removal: Registry Editing
14:04 Installing Sysmon on Windows VM
14:55 Installing LimaCharlie Agent on Windows VM
15:10 LimaCharlie - Creating an organization
15:46 LimaCharlie - Installing agent on Windows VM
18:13 LimaCharlie - Configuring LimaCharlie to ingest Sysmon logs from Windows VM
19:45 Sliver - Setup Sliver c2 Framewor on Ubuntu VM
20:41 Sliver - Get IP network details (this will be different values on your machine)
22:39 Sliver - Editing /etc/netplan/00-installer-config.yaml with network values
25:58 Sliver - SSH into Ubuntu box
26:13 Sliver - Downloading and installing Sliver
27:50 Sliver - Launching Sliver
29:20 Sliver - Pulling Sliver payload down onto Windows VM (victim)
31:46 Sliver - Sliver to access on Windows VM (using a session)
33:33 LimaCharlie - Seeing attacks in limacharlie
35:40 Resources to learn more about windows processes and binaries threat actors use
36:49 Checking VirusTotal via LimaCharlie to see if malware has been seen
38:43 Detection Engineering to detect this attack
40:08 Writing a custom detection rule in LimaCharlie
42:42 Seeing the detection in LimaCharlie work
43:10 Configuring a custom output webhook to add automation and notification to your detection (not in blog post, but cool so i added it)
RESOURCES IN VIDEO
Eric So You Want to Be A SOC Analyst blog post: https://blog.ecapuano.com/p/so-you-want-to-be-a-soc-analyst-intro
Lima Charlie: https://limacharlie.io/
Sliver You'll have to google, this video could be pulled down if i link to it for "reasons"
Sysmon: https://learn.microsoft.com/en-us/sysinternals/downloads/sysmon
SwiftOnSecurity Sysmon Config: https://github.com/SwiftOnSecurity/sysmon-config
EchoTrail: https://www.echotrail.io/
SANS Hunt Evil Poster: https://www.sans.org/posters/hunt-evil/
Living Off The Land Binaries, Scripts and Libraries: https://lolbas-project.github.io/#
Simply Cyber's mission is to help purpose driven professionals make and and take a cybersecurity career further, faster.
SEO
cybersecurity,information security,career,cyber,security,cyber security,cyber for beginners,blue team,cyber job,entry level cybersecurity,entry level,no degree,cyber careers,simply cyber,cyber security for beginners,get into cyber security,how to become a soc analyst,home lab,soc analyst,lima charlie,limacharlie edr,cyber lab,how to build a soc analyst,how to be a soc analyst,working as a soc analyst,cybersecurity for beginners,cybersecurity careers
link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link link
https://pharmacy4us.com/product/magic-beanz-mdma-pills/"rel"dofollow">Magic Beanz MDMA pills</a>
href=" https://pharmacy4us.com/product/nl-pills-white-mdma/"rel"dofollow">NL pills white MDMA</a>
href=" https://pharmacy4us.com/product/party-smart-pill/"rel"dofollow">Mitsubaihi Pink/Yellow Barcelona Netflix 230mg</a>
href=" https://pharmacy4us.com/product/xtc-pills/ "rel"dofollow">LIDL XTC tabs (200 - 220mg)</a>
href=" https://pharmacy4us.com/product/oxycontin-80mg/"rel"dofollow">OxyContin 80mg</a>
href=" https://pharmacy4us.com/product/pills-for-party/"rel"dofollow">Angry Birds 160mg</a>
href=" https://pharmacy4us.com/product/party-pills/ "rel"dofollow">FUCK YOU AND HAVE A NICE DAY</a>
href=" https://pharmacy4us.com/product/tramadol-200mg/ "rel"dofollow">Tramadol 200mg</a>
href=" https://pharmacy4us.com/product/pregabalin-dr-re…mg-hard-capsules"rel"dofollow">Pregabalin Dr. Reddys 300mg Hard Capsules</a>
href=" https://pharmacy4us.com/product/mirtazapine-45mg/ "rel"dofollow">Mirtazapine 45mg</a>
href=" https://pharmacy4us.com/product/pregabalin-300mg…sules-teva-brand/"rel"dofollow">Pregabalin 300mg Hard Capsules (Teva Brand)</a>
href=" https://pharmacy4us.com/product/pregabalin-milph…sules-hard-300mg/"rel"dofollow">Pregabalin Milpharm Capsules, Hard 300mg</a>
href=" https://pharmacy4us.com/product/tramadol-hydrochloride-100mg/"rel"dofollow">Tramadol Hydrochloride 100mg</a>
href=" https://pharmacy4us.com/product/pain-o-soma-350mg/"rel"dofollow">SOMA PAIN 30/350 MG</a>
href=" https://pharmacy4us.com/product/tapentadol-100mg/"rel"dofollow">Tapentadol 100mg</a>
href=" https://pharmacy4us.com/product/tramadol-100mg/ "rel"dofollow">Tramadol 100mg</a>
href=" https://pharmacy4us.com/product/codeine-phosphate-30mg/ "rel"dofollow">Codeine Phosphate 30mg</a>
href=" https://pharmacy4us.com/product/tramadol-50mg/"rel"dofollow">Tramadol 50mg</a>
href=" https://pharmacy4us.com/product/co-codamol-30-500mg-tablets/"rel"dofollow">Co-codamol 30/500mg Tablets</a>
href=" https://pharmacy4us.com/product/dihydrocodeine-30mg/"rel"dofollow">Dihydrocodeine 30mg</a>
href=" https://pharmacy4us.com/product/pregabalin-300mg-nervigesic/"rel"dofollow">Pregabalin 300mg (Nervigesic)</a>
href=" https://pharmacy4us.com/product/diazepam-5mg/ "rel"dofollow">Diazepam 5mg</a>
href=" https://pharmacy4us.com/product/lorazepam-1mg/"rel"dofollow">Lorazepam 1MG</a>
href="https://pharmacy4us.com/product/etizolam-tablet-1mg/"rel"dofollow">Etizolam Tablet 1mg</a>
href=" https://pharmacy4us.com/product/alprazolam-xanax-1mg-rlam/ "rel"dofollow">Alprazolam Xanax 1mg (Rlam)</a>
href=" https://pharmacy4us.com/product/alprazolam-xanax-1mg-rlam/"rel"dofollow">Alprazolam…
مواقع جيست بوست جميع المجالات
تبادل باك لينك
هل تريد تبادل باك لينك مع موقع عالي؟
نحن نمتلك 25 رابط دوفلو ذات جودة عالية
من يرغب تبادل باك لينك
يرجي التواصل معنا عبر الواتس اب
004917637777797
شيخ روحاني
شيخ روحاني
رقم شيخ روحاني
شيخ روحاني شيخ روحاني رقم ساحر سعودي جلب الحبيب جلب الحبيب جلب الحبيب رقم ساحر حقيقي جلب الحبيب BERLINintim casinoberlin berlinintim BERLINintim Berlin intim جلب الحبيب جلب الحبيب جلب الحبيب جلب الحبيب جلب الحبيب جلب الحبيب جلب الحبيب جلب الحبيب جلب الحبيب جلب الحبيبجلب الحبيبجلب الحبيب جلب الحبيب جلب الحبيب جلب الحبيب. ايات لجلب الحبيب العنيد . عظم الهدهد سريع الجلب للنساء . السحر المغربي لجلب الحبيب بالصورة . سورة الهمزة لجلب الحبيب .جلب الحبيب مجرب وصحيح . جلب الحبيب بسورة الفاتحة…