Cybersecurity SOAR EDR Project | Part 3

Sdílet
Vložit
  • čas přidán 14. 07. 2024
  • Embark on a cutting-edge journey into the integration of SOAR and EDR with our project featuring LimaCharlie and Tines. Learn how to automate security workflows, and enhance your cybersecurity posture effectively. We'll guide you through the configuration process and show how these tools work together to provide real-time security insights and responses. Whether you're a security professional or an IT enthusiast, this tutorial will equip you with the knowledge to deploy these security solutions in your own environment.
    D&R Rule: github.com/MyDFIR/SOAR-EDR-Pr...
    _________________________________
    THE MYDFIR SOC ANALYST COURSE:
    With 8 chapters and 30+ hands-on labs tailored to security operations, I am focused on transforming you into a standout SOC analyst. Beyond tools, you'll master the investigation process and uncover hidden details. Let's make a real difference together.
    ▸Enroll here: academy.mydfir.com/p/soc
    _________________________________
    SIGN UP FOR FREE MENTORSHIP
    Getting started in Cybersecurity is difficult and you don't have to do it alone.
    Let me help you on your journey.
    ▸Sign up for FREE here: www.mydfir.com
    _________________________________
    RECOMMEND COURSES FOR BEGINNERS:
    Coursera Google Cybersecurity Program
    Affiliate Link - imp.i384100.net/mydfir
    Microsoft Cybersecurity Analyst Professional Certificate
    Affiliate Link - imp.i384100.net/mydfir-MS
    Coursera Google IT Support Professional Certificate
    Affiliate Link - imp.i384100.net/mydfir-IT
    _________________________________
    PRODUCTS TO HELP YOU GET STARTED
    🗺️ 1-Year Cybersecurity Roadmap: mydfir.gumroad.com/l/roadmap
    📘 The NO BS SOC Analyst Roadmap: mydfir.gumroad.com/l/SOC-Anal...
    📄 Resume Template: mydfir.gumroad.com/l/Resume-T...
    📑 Cover Letter Template: mydfir.gumroad.com/l/Cover-Le...
    🎙️ Interview Questions: www.mydfir.com/interview
    📚 Cybersecurity bookmarks: mydfir.gumroad.com/l/bookmarks
    _________________________________
    EARLY ACCESS & EXCLUSIVE VIDEOS
    Patreon: / mydfir
    _________________________________
    🕒 TIMELINE
    00:00 - Intro
    00:33 - Demo
    02:52 - Detection & Response
    _________________________________
    FOLLOW ME ON SOCIAL MEDIA:
    ▸Instagram: / mydfir
    ▸X: x.com/@MyDFIR
    Disclaimer: All opinions in my videos are solely my own. Some links provided are affiliate links!
    #cybersecurity #cybersecuritytrainingforbeginners #cybersecurityforbeginners #socanalyst #soc

Komentáře • 20

  • @vishalgreene1854
    @vishalgreene1854 Před dnem

    This took me like 4 days to fully understand lol had to keep playing it over and over. Absolutely worth it

    • @MyDFIR
      @MyDFIR  Před dnem

      Definitely rewarding! Great job 🙌

  • @Bchicken2
    @Bchicken2 Před 13 dny

    Appreciate the content!

    • @MyDFIR
      @MyDFIR  Před 13 dny

      Thanks for watching!

  • @ItsCynik
    @ItsCynik Před 13 dny

    thank you, thats all i gotta say

  • @mapletech_22
    @mapletech_22 Před 13 dny

    Great stuff 👏 👍 👌 🙌

    • @MyDFIR
      @MyDFIR  Před 13 dny +1

      Thank you! Cheers!❤

  • @irocz5150
    @irocz5150 Před 13 dny

    Great video!!!

    • @MyDFIR
      @MyDFIR  Před 13 dny

      Thanks for watching!

  • @Just_A_Tech.._
    @Just_A_Tech.._ Před 13 dny

    💓👌🤝👌💓

  • @bulba888
    @bulba888 Před 7 dny

    Virustotal does not like Lazagne too, is it safe to run on my main host machine?

    • @MyDFIR
      @MyDFIR  Před 6 dny +1

      I would do everything on a vm

    • @bulba888
      @bulba888 Před 6 dny

      @@MyDFIR noted, thanks

  • @user-ky5qu1xt9u
    @user-ky5qu1xt9u Před 9 dny

    I want to say thank you for putting out such great videos. I am currently going along with this project and ran into my first issue. I created my detection rule and everything was moving along smoothly until I went back into powershell, typed 'lazagne.exe all' and it was not detected. I waited another hour to see if it would start populating in my detection section and still nothing. I'm currently stuck, any advice would be greatly appreciated :) Thanks!!

    • @MyDFIR
      @MyDFIR  Před 9 dny

      If you see the “lazagne all” event?

    • @user-ky5qu1xt9u
      @user-ky5qu1xt9u Před 8 dny

      @@MyDFIR yes

    • @user-ky5qu1xt9u
      @user-ky5qu1xt9u Před 8 dny

      @@MyDFIR After I created the detection rule I tested it and all 4 operations were working. I went back into powershell and ran the lazagne.exe all command and went back into limacharlie under the detection tab to see if anything was detected and still nothing. I stopped and restarted everything and ran it over again and still nothing. Thank you for responding btw

    • @MyDFIR
      @MyDFIR  Před 8 dny

      Whatttt OK, can you DM me on Instagram with screenshots?

    • @user-ky5qu1xt9u
      @user-ky5qu1xt9u Před 8 dny

      @@MyDFIR I just logged into everything and was getting ready to take screenshots and it generated a detection.. still took almost the entire day to generate lol but I am much appreciative of you ... seriously you have no idea how much your helping me!! Thank you again !! I'm going to move on to part 4 now.