Skip to content

0xd41AnX8un9/Active-Directory-Lab

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

3 Commits
 
 

Repository files navigation


Active-Directory-Lab

High-Level Workflow Diagram


About This Lab

This lab simulates a real-world Active Directory attack and detection environment designed to practice SOC operations, threat detection, and incident investigation using Splunk SIEM, Sysmon, and Atomic Red Team.

The environment models an enterprise Windows domain that is being actively attacked from an external adversary machine, while all security-relevant events are centrally collected and analyzed in Splunk.


Table of Content

About

This lab simulates a real-world Active Directory attack and detection environment designed to practice SOC operations, threat detection, and incident investigation using Splunk SIEM, Sysmon, and Atomic Red Team.

Topics

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

 
 
 

Contributors