Skip to content
-
Security You Can Trust, Expertise You Can Rely On. TekGenX Consulting
NetwerkLABS

Powered By TEKGENX CONSULTING

  • ATTACK
    • PenTest
    • Web Pentest
    • C2 Frameworks
    • VulnLAB
  • DETECT
    • Detection Engineering
    • DFIR
    • EDR | SIEM | SOAR
    • Purple Teaming
    • MITRE ATT&CK
  • DEFEND
    • CTEM
    • Attack Surface Management (ASM)
    • Network Infrastructure
    • Vulnerability Management
    • WAF | Firewalls | IDS/IPS
  • LEARNING PATHS
    • Wazuh SIEM & XDR
    • Attack & Defend AD
    • Cheat Sheets
  • GRC
    • ISO/IEC 27001
    • NIS2 | CyFUN
    • NIST
    • CIS Controls
  • CTI
    • Threat Intel
    • CyBER-NEWS
Subscribe

BLUE TEAM

  • Home
  • BLUE TEAM
  • Page 2
close up view of system hacking
Posted inINFOSEC Governance and Regulation Risk Management

Digital Operational Resilience Act (DORA)

Understanding the Digital Operational Resilience Act (DORA): A Comprehensive Overview In an era where digitalization permeates every aspect of our lives, the importance of cybersecurity and operational resilience has never been more critical. The European Union's…
Read More
Posted by Avatar photo Bharath Narayanasamy Tags: DORA
Pyramid of Pain
Posted inBLUE TEAM

Pyramid of Pain

Read More
Posted by Avatar photo Bharath Narayanasamy
DFIR: Linux File System Analysis
Posted inSOC Analyst Threat Detection and Incident Response Intrusion Detection and Response

DFIR: Linux File System Analysis

Read More
Posted by Avatar photo Bharath Narayanasamy Tags: linux, incident response, detection, dfir
Posted inSplunk

Splunk SPL 101

Read More
Posted by Avatar photo Bharath Narayanasamy Tags: splunk, SPL
Practical Threat Hunting using Elastic SIEM: Hunting for Stuxbot
Posted inThreat Hunting Threat Detection and Incident Response Elastic SIEM

Practical Threat Hunting using Elastic SIEM: Hunting for Stuxbot

Based on the INTRODUCTION TO THREAT HUNTING & HUNTING WITH ELASTIC module from HTB-Academy Hunting for Stuxbot The Stuxbot cybercrime group operates with a broad scope, seizing upon opportunities as they arise, without any specific targeting…
Read More
Posted by Avatar photo Bharath Narayanasamy Tags: Elastic, Threat_hunting
Netminer
Posted inThreat Hunting SOC Analyst Threat Detection and Incident Response

Netminer

NetworkMiner CapabilityDescriptionTraffic sniffingIt can intercept the traffic, sniff it, and collect and log packets that pass through the network.Parsing PCAP filesIt can parse pcap files and show the content of the packets in detail.Protocol analysisIt can identify the…
Read More
Posted by Avatar photo Bharath Narayanasamy Tags: Threat_hunting, threat_detection, netminer, dfir
Posted inSOC Analyst Threat Detection and Incident Response BLUE TEAM

Introduction to Network Forensics

Source: Tryhackme Networkminer room Introduction to Network Forensics Network Forensics is a specific subdomain of the Forensics domain, and it focuses on network traffic investigation. Network Forensics discipline covers the work done to access information transmitted…
Read More
Posted by Avatar photo Bharath Narayanasamy Tags: BLUE, networkminer, traffic_analysis, threat_detection, dfir
Posted inBLUE TEAM DETECT

Wireshark: 802.11 Denial of Service

Read More
Posted by Avatar photo Bharath Narayanasamy Tags: wireshark, wifi, 802.11
Analysis with Wireshark
Posted inThreat Detection and Incident Response BLUE TEAM DETECT

Analysis with Wireshark

TShark VS. Wireshark (Terminal vs. GUI) TShark is a purpose-built terminal tool based on Wireshark. TShark shares many of the same features that are included in Wireshark and even shares syntax and options. TShark is perfect…
Read More
Posted by Avatar photo Bharath Narayanasamy Tags: wireshark
Posted inDETECT Elastic SIEM

Elastic SIEM: Developing Dashboards & Visualization

Use case 1: Failed Logon Attempts (Disabled Users) https://youtu.be/7Uyqek-FdwI Use case 2: Failed Logon Attempts (using Admin Accounts) https://youtu.be/UGRmsoqk0EM Use case 3: Successful RDP Logon Related To Service Accounts https://youtu.be/eRjA6TpEryk Use case 4: Users Added Or…
Read More
Posted by Avatar photo Bharath Narayanasamy Tags: SIEM, Elastic, Threat_hunting

Posts pagination

Previous page 1 2 3 Next page

Recent Posts

  • NetBox Labs: Bringing Clarity and Control to Modern Network Infrastructure
  • CyFUN Implementation: A Practical Roadmap
  • XSS vs SSRF: Two Different Trust Boundaries, Two Different Attacks
  • Importing the Wazuh 5.0 Beta OVA into Proxmox
  • Exploring Wazuh: Introduction

Categories

AD AD attacks Atomic RED brute-force caldera CISO dfir Elastic hydra linux NIST red-team SIEM snort splunk Threat Intel threat_detection vulnhub wazuh wireshark

Copyright 2026 — NetwerkLABS. Powered by TekGenX Consulting. All rights reserved.
Scroll to Top

Powered by
Necessary cookies enable essential site features like secure log-ins and consent preference adjustments. They do not store personal data.
None
Functional cookies support features like content sharing on social media, collecting feedback, and enabling third-party tools.
None
Analytical cookies track visitor interactions, providing insights on metrics like visitor count, bounce rate, and traffic sources.
None
Advertisement cookies deliver personalized ads based on your previous visits and analyze the effectiveness of ad campaigns.
None
Unclassified cookies are cookies that we are in the process of classifying, together with the providers of individual cookies.
None
Powered by