- North Carolina
-
03:03
(UTC -04:00) - in/tresean-tuggle-b36811138
Pinned Loading
-
detection-engineering-portfolio
detection-engineering-portfolio PublicEnd-to-end detection engineering portfolio: endpoint telemetry, SIEM platforms, MITRE ATT&CK mapping, and SOC operations
-
azure-ad-signin-analyzer
azure-ad-signin-analyzer PublicPython tool for analyzing Azure AD sign-in logs to detect brute force and off-hours authentication activity
Python
-
hybrid-active-directory-lab
hybrid-active-directory-lab PublicThis project documents the deployment of a hybrid Active Directory environment in Microsoft Azure and the operational tasks performed within it.
-
MITRE-mapping
MITRE-mapping PublicThis lab demonstrates the process of analyzing Windows endpoint execution telemetry and mapping observed behavior to the MITRE ATT&CK framework, with a focus on analyst reasoning rather than tooling.
-
process-network-correlation-lab
process-network-correlation-lab PublicThis activity consists of a PowerShell execution followed shortly by DNS resolution and outbound HTTP communication to the same domain.
-
Windows-Endpoint-Telemetry-II-SOC-Triage
Windows-Endpoint-Telemetry-II-SOC-Triage PublicExtended windows telemetry by validating host-based Sysmon and Event ID 4688 signals and preparing cloud-based SIEM ingestion for SOC-style detection and triage.
If the problem persists, check the GitHub status page or contact support.