* Cantinho Satkeys

Refresh History
  • FELISCUNHA: ghyt74  pessoal  49E09B4F
    11 de Setembro de 2026, 11:37
  • JP: try65hytr Pessoal  4tj97u<z 2dgh8i k7y8j0 classic
    11 de Setembro de 2026, 05:33
  • JP: try65hytr Pessoal k7y8j0 2dgh8i k7y8j0 yu7gh8
    08 de Setembro de 2026, 04:15
  • j.s.: dgtgtr a todos  49E09B4F 49E09B4F
    06 de Setembro de 2026, 12:15
  • FELISCUNHA: Votos de um santo domingo para todo o auditório  k8h9m
    06 de Setembro de 2026, 12:02
  • JP: try65hytr Pessoal 4tj97u<z 2dgh8i k7y8j0 r4v8p
    04 de Setembro de 2026, 04:35
  • FELISCUNHA: ghyt74  pessoal   49E09B4F
    03 de Setembro de 2026, 08:38
  • JP: try65hytr Pessoal 4tj97u<z 2dgh8i k7y8j0 yu7gh8
    01 de Setembro de 2026, 04:12
  • j.s.: try65hytr a todos  49E09B4F
    31 de Agosto de 2026, 20:33
  • FELISCUNHA: ghyt74  pessoal   49E09B4F
    26 de Agosto de 2026, 10:51
  • JP: try65hytr Pessoal 4tj97u<z 2dgh8i k7y8j0 classic
    25 de Agosto de 2026, 04:05
  • FELISCUNHA: ghyt74  pessoal   49E09B4F
    21 de Agosto de 2026, 11:28
  • JP: try65hytr Pessoal 4tj97u<z 2dgh8i k7y8j0 classic
    21 de Agosto de 2026, 05:22
  • JP: try65hytr Pessoal 4tj97u<z 2dgh8i k7y8j0 43e5r6
    17 de Agosto de 2026, 04:09
  • j.s.: dgtgtr a todos  49E09B4F
    15 de Agosto de 2026, 15:07
  • FELISCUNHA: ghyt74   49E09B4F  e bom fim de semana  4tj97u<z
    15 de Agosto de 2026, 11:45
  • Alberto: Revistas
    15 de Agosto de 2026, 05:32
  • JP: try65hytr Pessoal 4tj97u<z 2dgh8i k7y8j0
    14 de Agosto de 2026, 05:05
  • j.s.: try65hytr try65hytr a todos  49E09B4F 49E09B4F
    11 de Agosto de 2026, 20:26
  • JP: try65hytr Pessoal 2dgh8i k7y8j0 r4v8p
    11 de Agosto de 2026, 04:30

Autor Tópico: Splunk Training with Real-World Investigations  (Lida 7 vezes)

0 Membros e 1 Visitante estão a ver este tópico.

Online WAREZBLOG

  • Moderador Global
  • ***
  • Mensagens: 19396
  • Karma: +0/-0
Splunk Training with Real-World Investigations
« em: 06 de Setembro de 2026, 21:05 »

Splunk Training with Real-World Investigations
Published 9/2026
MP4 | Video: h264, 1920x1080 | Audio: AAC, 44.1 KHz, 2 Ch
Language: English | Duration: 4h 53m | Size: 3.06 GB
Master SPL and MITRE ATT&CK through full Windows SOC investigations - Sysmon, Security, and PowerShell logs

What you'll learn
Investigate real security incidents in Splunk using Sysmon, Windows Security, and PowerShell logs
Write core SPL commands - search, stats, table, timechart, dedup, eval - to find and filter threats
3. Map attacker behavior to MITRE ATT&CK across Discovery, Defense Evasion, and Collection tactics
4. Tell true positives from false positives using evidence, not assumptions or surface-level signals
Requirements
No prior SOC, Splunk, or cybersecurity experience required. We start from what a log actually is and build up to full investigations step by step.
Description
This course contains the use of artificial intelligence.
Most Splunk courses teach you commands. This one teaches you to actually think like a SOC analyst.
You'll start with the basics - what a log is, how Splunk searches work, the SPL commands you'll use every day. Then you'll dive into 14 real investigations, built from real Windows logs (Sysmon, Security, PowerShell). Each one starts with just a ticket - no answers given. You'll dig through the evidence, cross-check sources, and decide for yourself: is this an attack, or nothing at all?
Along the way you'll learn to spot the tricks that trip up new analysts - like trusting a signed publisher name that turns out to be irrelevant, or missing the one command-line flag that changes everything.
This course also covers MITRE ATT&CK, so the techniques you investigate map to language the industry actually uses. Every incident is mapped to a real tactic - Discovery, Defense Evasion, Collection - so what you learn here carries directly into interviews and real SOC work, not just this course.
By the end, you won't just know Splunk syntax. You'll have actually investigated something, 14 times over.
No prior experience needed. If you can read a log line, you can start.
Who this course is for
Aspiring SOC analysts
cybersecurity career-changers
IT professionals moving into security who need hands-on Splunk experience
Homepage
Código: [Seleccione]
https://www.udemy.com/course/splunk-training-with-real-world-investigations/
Recommend Download Link Hight Speed | Please Say Thanks Keep Topic Live
No Password  - Links are Interchangeable