CYBEROLE / 100 QUESTIONS
Threat hunting and detection
in the real world.
Use process, network and registry evidence to find suspicious activity before an alert tells the whole story.
What you will practise
01Process trees
02Network connections
03Run keys
04Scheduled tasks
05Detection rules