[SOC-Level 1] Tryhackme - Zeek Exercises
TryHackMe- ZEEK Exercises Task 1: Anomalous DNS Activity Investigate the dns-tunneling.pcap file. Investigate the dns.log file. What is the number of DNS records linked to the IPv6 address? ...
TryHackMe- ZEEK Exercises Task 1: Anomalous DNS Activity Investigate the dns-tunneling.pcap file. Investigate the dns.log file. What is the number of DNS records linked to the IPv6 address? ...
TryHackMe- ZEEK Introduction What is Zeek? Zeek (formerly Bro) is an open-source and commercial passive Network Monitoring tool (traffic analysis framework) developed by Lawrence Berkeley Labs....
TryHackMe- Snort Live Attacks Scenario 1: Brute-Force First of all, start Snort in sniffer mode and try to figure out the attack source, service and port. Then, write an IPS rule and run Snort ...
TryHackMe- Snort Challenge Task 3: Writing IDS Rules (PNG) Investigate the logs and identify the software name embedded in the packet. Investigate the logs and identify the image format emb...
TryHackMe- Snort Challenge Task 1: Writing IDS Rules (HTTP) What is the number of detected packets? What is the destination address of packet 63? What is the ACK number of packet 64? Wh...
TryHackMe- Friday Overtime Scenario: Disclaimer Please note: The artefacts used in this scenario were retrieved from a real-world cyber-attack. Hence, it is advised that interaction with the ar...
Level 27 Username: bandit27 Password: upsNCc7vzaRDx6oZC6GiR6ERwe1MowGB Task: https://overthewire.org/wargames/bandit/bandit28.html There is a git repository at ssh://bandit27-git@localhost/hom...
Level 26 Username: bandit26 Password: s0773xxkk0MXfdqOfPRVr9L3jJBUOgCZ Task: https://overthewire.org/wargames/bandit/bandit27.html Good job getting a shell! Now hurry and grab the password for ...
Level 25 Username: bandit25 Password: iCi86ttT4KSNe1armKiwbQNmB3YJP3q4 Task: https://overthewire.org/wargames/bandit/bandit26.html Logging in to bandit26 from bandit25 should be fairly easy… T...
TryHackMe- Agent Sudo Tasks Enumerate How many open ports? How you redirect yourself to a secret page? What is the agent name? Hash cracking and brute-force ...