Skip to main content
Intermediate Planned

Cybersecurity Threat Hunting Lab

Hands-on lab series for detecting, analyzing, and responding to modern cyber threats using open-source security tools.

Project Modules

Follow these build guides in order. Published modules are ready to start.

Continue learning →

Before You Start

  • Basic networking knowledge
  • Familiarity with Linux command line
  • Understanding of common attack vectors

What You'll Learn

  • Analyze security logs for suspicious activity
  • Build detection rules with Sigma and YARA
  • Conduct network traffic analysis
  • Perform malware triage in a sandbox
  • Document and execute incident response playbooks

Implementation Roadmap

Security Monitoring Setup

Configure log collection, SIEM dashboards, and alerting.

Planned

Threat Detection Rules

Write and test detection rules for common attack patterns.

Planned

Incident Response Drills

Run tabletop exercises and live response scenarios.

Planned