Threat Detection & Hunting

intermediate4 labsSubscription

Detection-engineering and threat-hunting: the MITRE ATT&CK framework, authoring Sigma rules, hypothesis-driven hunting in endpoint telemetry, and detecting common red-team TTPs.

This path is available with a Purple Edge subscription. Sign in to read the full overview and start the labs.

Labs in this path

  1. 1
  2. 2
  3. 3
  4. 4

Unlock this lab

Launch the lab in your browser. Real Kali, Ubuntu and Windows targets, guided step by step. No setup, no VM downloads.

Updated 2026-06-06