Attack & Defend: Hack It, Then Catch It
1 attendee from 3 groups hosting
Details
Two weeks ago we sat in the SOC and watched real attack traffic hit a live SIEM. Last week we went the other way and took a target from recon to shell. Tonight we put both seats in the same room.
We run one attack against a lab target we own, then switch chairs and hunt for it. What did the attacker leave behind? Which log caught it? Which one didn't, and why? You'll see the same event from both sides, and you'll see why each side gets better by watching the other one work.
This year's Cybersecurity Awareness Month theme is "Don't Make It Easy for Them." Tonight you'll see what that looks like from both sides of the keyboard.
This one is network-wide. HQ in the DMV, Atlanta, and South Florida on the same call.
šÆ What We'll Cover
- The attack, step by step: recon, the foothold, and what the attacker did once they were in
- The defense, same timeline: the alerts and log lines each step produced in Splunk
- The gaps: what the defender missed the first time, and the detection that closes it
- How to practice both sides at home, and which one to start with
Hosted by Tyrone E. Wilson, founder of Cover6 Solutions, 30 years in IT and cybersecurity.
š Stay connected:
- Cover6 Solutions: https://www.cover6solutions.com
- YouTube (live streams + replays): https://www.youtube.com/@Cover6Solutions
- Courses and certification prep: https://cover6solutions.com/courses/
š¤ Want to speak at a future meetup? https://sessionize.com/cover6community
Rep the community ā https://www.cover6solutions.com/product/cover6-shield-unisex-t-shirt/
Grab a Cover6 Shield tee and show up repping the community that helped get you here.
š¤ Hiring entry-level security talent, or want your brand in front of people building into this field? Sponsorship and hiring conversations start at info@cover6solutions.com
#AttackNDefend #CybersecurityAwarenessMonth
