🚀 A Practical Cybersecurity Knowledge Base built while learning Security Operations (SOC), Detection Engineering, DFIR, Splunk, SIEM and Web Security.
"Learn. Practice. Document. Improve."
This repository is my personal cybersecurity knowledge base where I document everything I learn while studying and practicing cybersecurity.
Instead of simply completing labs, I break every topic into detailed notes with explanations, screenshots, practical examples, commands, and real-world concepts.
The goal is simple:
- Build a second brain for cybersecurity.
- Help beginners learn faster.
- Track my own cybersecurity journey.
- Create a practical reference for future SOC and DFIR work.
- Learn Security Operations Center (SOC)
- Master SIEM Fundamentals
- Learn Splunk Search Processing Language (SPL)
- Understand Endpoint Detection & Response (EDR)
- Study Windows Event Logs
- Learn Threat Detection
- Build Blue Team Skills
- Understand Cyber Kill Chain
- Learn Malware Analysis
- Prepare for SOC Analyst interviews
Cybersecurity-Notes
│
├── Blogs
│ └── SIEM Solution
│
├── TryHackMe
│
│ ├── Burp Suite
│ │ ├── Introduction
│ │ ├── Proxy
│ │ └── Foxy Proxy
│ │
│ ├── Burp Suite Repeater
│ │ └── Introduction
│ │
│ ├── Burp Suite Intruder
│ │ ├── Attack Types
│ │ ├── Payloads
│ │ ├── Positions
│ │ └── Working of Intruder
│ │
│ └── SOC Level 1
│ ├── Cyber Kill Chain
│ ├── Malware for SOC
│ ├── Pyramid of Pain
│ │
│ └── SOC Solution
│ ├── SIEM
│ ├── Splunk
│ ├── SPL Part 1
│ ├── SPL Part 2
│ ├── Investigating EDR Alerts
│ └── Endpoint Detection & Response
│
└── Attachments
└── Images used in Notes
- Security Operations Center
- SIEM
- Splunk
- Search Processing Language (SPL)
- Endpoint Detection and Response (EDR)
- Alert Investigation
- Threat Detection
- Log Analysis
- Cyber Kill Chain
- Pyramid of Pain
- Malware Basics
- Proxy
- Repeater
- Intruder
- Attack Types
- Payload Positions
- Foxy Proxy Configuration
- SIEM Solutions
Each note generally contains:
- 📖 Beginner-friendly explanations
- 🧠 Important concepts
- 📸 Screenshots
- 🛠️ Practical examples
- 📌 Commands
- 💡 Tips
- 🎯 Interview points
- 🔍 Real-world observations
Networking
↓
Linux Basics
↓
Cyber Security Fundamentals
↓
SOC Level 1
↓
SIEM
↓
Splunk
↓
SPL Queries
↓
EDR
↓
Threat Hunting
↓
Incident Response
↓
DFIR
- Splunk
- Burp Suite
- FoxyProxy
- TryHackMe
More tools will be added as my learning journey continues.
✅ Students
✅ Beginners
✅ SOC Analyst Aspirants
✅ Blue Team Learners
✅ TryHackMe Learners
✅ Cybersecurity Enthusiasts
- SOC Level 1
- Splunk
- SIEM
- SPL Queries
- Detection Engineering
- Threat Hunting
- Windows Event Logs
- Sysmon
- Sigma Rules
- YARA Rules
- Wireshark
- Zeek
- Suricata
- Elastic Stack
- Wazuh
- Microsoft Sentinel
- Digital Forensics
- Incident Response
- Malware Analysis
- Threat Intelligence
- Detection Engineering
- Active Directory
- Network Security
- Linux Security
- Cloud Security
- AWS Security
Suggestions, improvements, and corrections are always welcome.
If you notice something incorrect or have a better explanation, feel free to open an Issue or submit a Pull Request.
If these notes helped you, consider giving this repository a ⭐.
It motivates me to continue documenting everything I learn.
Computer Engineering Student
Cybersecurity | SOC | DFIR | Blue Team | Detection Engineering
- GitHub: https://github.com/codewithMohak
- LinkedIn: https://www.linkedin.com/in/mohak-agarwal/
- Medium: https://medium.com/@mohakagarwal.sec/