CYBEROLE / 100 QUESTIONS

Threat hunting and detection
in the real world.

Use process, network and registry evidence to find suspicious activity before an alert tells the whole story.

What you will practise

01Process trees
02Network connections
03Run keys
04Scheduled tasks
05Detection rules