LetsDefend

3.2K posts

LetsDefend banner
LetsDefend

LetsDefend

@LetsDefendIO

LetsDefend, now part of Hack The Box. Read more: https://t.co/jxMnGZ4Yne

Cloud Beigetreten Temmuz 2020
1 Folgt138.5K Follower
LetsDefend
LetsDefend@LetsDefendIO·
ARP 101
GIF
0
30
173
4.2K
LetsDefend
LetsDefend@LetsDefendIO·
SIEM Logs
LetsDefend tweet media
Latviešu
1
22
176
6.6K
LetsDefend
LetsDefend@LetsDefendIO·
Is 2026 a good time to live?
LetsDefend tweet media
English
3
35
330
7.7K
LetsDefend
LetsDefend@LetsDefendIO·
⚠️ New Challenge: Koredos During an incident response engagement, the SOC team recovered a DLL file from the system32 directory of a compromised Windows host.
LetsDefend tweet media
English
0
1
13
1.7K
LetsDefend
LetsDefend@LetsDefendIO·
⚠️ New SOC Alert: Suspicious Rundll32 Execution Detected Attackers use suspicious Rundll32 execution to proxy malicious DLL/code via a trusted Windows process, evading detection, blending with legit activity, and bypassing app controls (e.g., for credential theft). 👥 Role: Incident Responder 🛠️ Type: Generic 💪 Difficulty: Medium 🔢 Event ID: 285
LetsDefend tweet media
English
1
8
45
3.3K
LetsDefend
LetsDefend@LetsDefendIO·
Can you?
LetsDefend tweet media
English
6
19
176
6.4K
LetsDefend
LetsDefend@LetsDefendIO·
💯 Do you want to be a SOC Manager? The FIRST SOC Manager course: Exploring the Cyber Threat Landscape
LetsDefend tweet media
English
1
3
33
2.3K
LetsDefend
LetsDefend@LetsDefendIO·
Thanks. 🫡
English
2
28
273
11K
LetsDefend
LetsDefend@LetsDefendIO·
Public key vs Private key
LetsDefend tweet media
English
4
91
464
12.4K
LetsDefend
LetsDefend@LetsDefendIO·
⚠️ New SOC Alert: Critical System File Deletion Attackers use Critical System File Deletion to erase logs, disable defenses, or trigger privilege escalation (e.g., via Windows Installer abuse), evading detection and causing DoS. This hides tracks and disrupts recovery. 🛠️ Type: Persistence 👥 Role: Incident Responder 💪 Difficulty: Medium 🔢 Event ID: 283
LetsDefend tweet media
English
3
7
46
3.3K
LetsDefend
LetsDefend@LetsDefendIO·
SIEM Alert Investigation
LetsDefend tweet media
Deutsch
2
1
68
4.1K
LetsDefend
LetsDefend@LetsDefendIO·
🥳 The MOST wanted learning path: Threat Hunting 📚️ 20 Courses 🔬 Tons of labs 🎓️ Certificate
LetsDefend tweet media
English
0
17
99
3.8K
LetsDefend
LetsDefend@LetsDefendIO·
Ran somewhere
LetsDefend tweet media
English
0
15
116
6.8K
LetsDefend
LetsDefend@LetsDefendIO·
Popular ports for security teams
LetsDefend tweet media
English
0
59
333
8.7K
LetsDefend
LetsDefend@LetsDefendIO·
⚠️ New Challenge: Remote Access Regret
LetsDefend tweet media
English
1
5
19
2.4K
LetsDefend
LetsDefend@LetsDefendIO·
⚠️ New SOC Alert: Event Log Cleared Attackers clear event logs (e.g., via wevtutil cl Security) to erase traces of intrusion like logins, malware execution, or privilege escalation, evading forensics and detection. 👥 Role: Incident Responder 💪 Difficulty: Persistence 🛠️ Type: Medium 🔢 Event ID: 282
LetsDefend tweet media
English
1
4
44
3.9K
LetsDefend
LetsDefend@LetsDefendIO·
Phishing emails 🐟️
English
1
4
31
2.8K
LetsDefend
LetsDefend@LetsDefendIO·
⚠️ New Course: Malware Obfuscation Techniques
LetsDefend tweet media
English
0
7
33
2.4K
LetsDefend
LetsDefend@LetsDefendIO·
SIEM vs SOAR
LetsDefend tweet media
Indonesia
2
6
58
2.6K
LetsDefend
LetsDefend@LetsDefendIO·
Respect.
LetsDefend tweet media
English
0
12
86
3.2K