Curated hands-on challenges and competitions — selected for direct relevance to detection engineering, incident response, and network forensics.
Blue Team Labs Online
3 challengesBTLO achievement links serve as verification — no downloadable certificates are issued by the platform.
Threat intelligence investigation into APT3 (GOTHIC PANDA) — researched campaign TTPs, mapped actor techniques to MITRE ATT&CK, and leveraged OSINT with advanced Google dorking to attribute infrastructure.
Incident response investigation using Graylog SIEM — analyzed log data to reconstruct the timeline of a corporate breach, identified compromised assets, and traced attacker lateral movement through correlated events.
Digital forensics challenge — investigated a network capture in Wireshark to identify indicators of compromise, reconstructed attack flow, and mapped findings to MITRE ATT&CK techniques.
Capture the Flag
1 eventCompetitive blue team CTF event hosted by TryHackMe — solved security challenges under time pressure across multiple domains. Placed in the top quarter of the field.