◈ Featured Lab
Detect and Investigate a Security Incident
Analyze sample Windows logs, identify suspicious authentication patterns, triage alerts and write an incident summary.
Turn knowledge into real-world skills. Practice defensive security in controlled, hands-on lab environments designed for learning, exploration, and real-world readiness.
◈ Featured Lab
Analyze sample Windows logs, identify suspicious authentication patterns, triage alerts and write an incident summary.
Choose a track to build your skills through hands-on, real-world scenarios.
Learn to analyze Windows events and PowerShell logging for defensive investigations.
Practice alert triage, evidence collection and incident reporting with benign test events.
Study authorized packet captures to understand protocols, DNS and suspicious traffic patterns.
Review Linux services, permissions and logs to create a repeatable defensive baseline.
Use a local training application to review authentication, input handling and remediation.
Review identity telemetry and common defensive controls in an isolated Active Directory domain.
Structured tracks to help you build real defensive security skills, from fundamentals to advanced.