Endpoint detection pipeline using Sysmon, Splunk, and Atomic Red Team. Learning detection engineering hands-on.
-
Updated
Mar 17, 2026
Endpoint detection pipeline using Sysmon, Splunk, and Atomic Red Team. Learning detection engineering hands-on.
Laboratório de Detection Engineering com Wazuh e Sysmon para detecção de execução do PowerShell mapeada à técnica MITRE ATT&CK T1059.001. | | Detection Engineering lab with Wazuh and Sysmon for PowerShell detection mapped to MITRE ATT&CK T1059.001.
SOC-style home lab: centralized Linux log monitoring with SSH brute-force detection and automated alerting.
Add a description, image, and links to the detection-engineerin topic page so that developers can more easily learn about it.
To associate your repository with the detection-engineerin topic, visit your repo's landing page and select "manage topics."