Detectioneer
Intrusion Analyser
Level 18 64371 / 72438
*Rankings computed based on core modules (64021 pts).
Joined in March, 2024
Detectioneer earned 9 badges
Valdorian Times
This analyst investigated an email phishing attack in Valdoria that uncovered a politically motivated influence campaign. Using Kusto Query Language (KQL), they analyzed employee roles, email communications, and computer process events, revealing evidence of data exfiltration and manipulation. This exercise reinforced skill in querying data and understanding data integrity within a cybersecurity context.
Issued on: Mar 07, 2024
Balloons Over Iowa
This analyst completed the "Balloons Over Iowa" module, investigating a phishing and ransomware attack. They identified command and control connections, detected data exfiltration, analyzed Mimikatz activity, and observed shadow copy deletions, demonstrating their ability to effectively respond to and analyze cyber threats.
Issued on: Mar 15, 2024
MCJ Walker
This analyst completed the "MCJ Walker" module, demonstrating mastery of advanced investigative skills. They used Kusto Query Language (KQL) in an investigation that covered a sophisticated password spray attack, lateral movement via RDP, and full domain compromise. This exercise showcased their expert-level ability to respond to advanced cyber threats by leveraging in-depth knowledge of threat actor tactics, techniques, and procedures (TTPs).
Issued on: Apr 30, 2024
HopsNStuff
This analyst completed the "HopsNStuff" module, investigating a cyber attack through the analysis of endpoint process events and command-line activities. They demonstrated skills in identifying anomalous file behavior by using Kusto Query Language (KQL) to uncover malicious activities. The investigation highlighted their ability to analyze and deobfuscate malicious PowerShell commands, effectively identifying and responding to data exfiltration techniques.
Issued on: Apr 30, 2024
Sunlands ☀️🚀🧑🚀
This analyst investigated a sophisticated cyber attack on the Sunlands Aeronautics and Space Administration (SASA). They demonstrated advanced skills in detecting phishing attacks, analyzing malicious file downloads, and uncovering command and control infrastructure and persistence mechanisms. This exercise showcased their ability to respond to advanced cyber threats using threat actor tactics, techniques, and procedures (TTPs).
Issued on: May 06, 2024
Dai Wok Foods
This analyst completed the "Dai Wok Foods" module. They demonstrated skills in detecting phishing attempts, analyzing email logs, and using Passive DNS for domain analysis. This proficiency is vital for countering threat actor tactics and protecting organizational assets.
Issued on: May 07, 2024
Inside Encryptodera
This analyst investigated an easy-level insider threat scenario by identifying suspicious employee activities, analyzing internal communications, and tracking unauthorized data transfers. They used Kusto Query Language (KQL) to analyze network flows and identify abnormal data movement to build and insider-threat profile.
Issued on: Sep 23, 2024
Rap Beef
This analyst investigated a themed scenario involving rival hip-hop artists. They used key cybersecurity skills to identify suspicious communications and activities, analyzing internal messages to track unauthorized exchanges and uncover patterns. This exercise reinforced critical skills in data analysis, threat detection, and the application of cybersecurity principles in unconventional contexts.
Issued on: Sep 23, 2024
HHC2024
This analyst successfully investigated a complex series of challenges in the "The Great Elf Conflict" for the 2024 SANS Holiday Hack Challenge. Leveraging Kusto Queries to guide their investigation, demonstrating skills in leveraging advanced tools and integrating threat data to uncover and understand security threats.
Issued on: Nov 19, 2024
Detectioneer played 16 games
Balloons Over Iowa 4405/4405
HopsNStuff 14265/14265
KRUSTY KRAB 0/7360
Dai Wok Foods 11600/11600
Castle & Sand 0/13050
DAILY7 🌎🌟 2649/3930
MCJ Walker 15265/15265
Sunlands 8437/8437
Scholomance 10/5640
A Storm Is Brewing In the Lab 0/5670
A Scandal in Valdoria 🌟 2430/2430
Inside Encryptodera 3990/3990
Private Module 0/2430
A Rap Beef (START HERE) 950/950
Private Module 350/350
A Rap Steak 20/19010
Issue Badge to Detectioneer
# | Image | Badge | Description | Action |
---|---|---|---|---|
1 | Advanced Persistent Analyst | Someone who failed, got up, and tried again! | ||
2 | Helping Hand | This award is community-nominated! Someone in the KC7 community has recognized this user for their contributions to others! | ||
3 | Notre Dame Challenge | Completed the cybersecurity challenge event at Notre Dame in June 2023 | ||
4 | KC7 Top 10 (2023) | Awarded to top 10 KC7 players in 2023 | ||
5 | Cyber Challenge Series: Team Winner | This badge is issued to KC7 players who were members of a team that placed top 3 in a Blue Team Cyber Challenge event! | ||
6 | Super Fan | This badge is issued to any KC7 player who has completed 3 modules or more! | ||
7 | Most Improved | Someone who really improved over the course of a KC7 event! | ||
8 | Cyber Challenge Series: Winner | This badge is issued to KC7 players who placed top 3 (as an individual) in an Blue Team Cyber Challenge event! | ||
9 | 30 day hot steak | Awarded to a user who has answered a question for 30 days in a row. | ||
10 | 90 day streak | Awarded to a user who has answered a question for 90 days in a row. | ||
11 | Inside Encryptodera - Event Participant | Participant in the February 2024 monthly event featuring the Encryptodera module | ||
12 | The Teacher | Someone who really helped lift up their peers and enabled others to learn! | ||
13 | Bright Future | Someone who shows a lot of potential as a future cyber analyst! | ||
14 | Azure Crest | This analyst investigated a ransomware attack, where cost-cutting measures led to a single point of failure in their systems. This exercise highlighted the risks associated with prioritizing cost over security and reinforced skills in identifying vulnerabilities and understanding the broader implications of inadequate security measures in a healthcare context. | ||
15 | 2024 SANS New2Cyber CTF Participant | This badge has been awarded to those who took part in the 2024 SANS New2Cyber x KC7 Capture The Flag (CTF) challenge, which involved investigating a ransomware attack on a hospital. | ||
16 | 60 day streak | Awarded to a user who has answered a question for 60 days in a row. | ||
17 | 120 day streak | Awarded to a user who has answered a question for 120 days in a row! | ||
18 | Intro Master |