THM Intro to Defensive Security - grunt92/IT-Sec-WriteUps GitHub Wiki

Introduction to Defensive Security

Which team focuses on defensive security?

blue team

Areas of Defensive Security

What would you call a team of cyber security professionals that monitors a network and its systems for malicious events?

Security Operations Center

What does DFIR stand for?

Digital Forensics and Incident Response

Which kind of malware requires the user to pay money to regain access to their files?

ransomware

Practical Example of Defensive Security

What is the flag that you obtained by following along?

Start up the site. Search for the unauthorized access-attempt. Write down the IP and click on the alert. Enter the IP into the search bar and you will get the information that the IP is malicious. Click on the next-button and select the SOC-Lead as a contact. Enter the IP-address in the text-field for the block-rule and click the "Block-IP"-button and you get the flag.