# SOC Roadmap "Rooms and Challanges zero 2 hero "

THM

## **Pre Security**

**What is Networking?**

[TryHackMe | What is Networking?](https://tryhackme.com/room/whatisnetworking)

**Introductory Networking**

[TryHackMe | Introductory Networking](https://tryhackme.com/room/introtonetworking)

**Network Services**

[TryHackMe | Cyber Security Training](https://tryhackme.com/room/networkservices)

**Network Services 2**

[TryHackMe | Cyber Security Training](https://tryhackme.com/room/networkservices2)

**Intro to LAN**

[TryHackMe | Intro to LAN](https://tryhackme.com/room/introtolan)

**OSI Model**

[TryHackMe | Cyber Security Training](https://tryhackme.com/room/osimodelzi)

**Packets & Frames**

[TryHackMe | Cyber Security Training](https://tryhackme.com/room/packetsframes)

**Extending Your Network**

[TryHackMe | Cyber Security Training](https://tryhackme.com/room/extendingyournetwork)

**DNS in detail**

[TryHackMe | DNS in detail](https://tryhackme.com/room/dnsindetail)

**HTTP in detail**

[TryHackMe | HTTP in detail](https://tryhackme.com/room/httpindetail)

**How websites work**

[TryHackMe | Cyber Security Training](https://tryhackme.com/room/howwebsiteswork)

**Linux Fundamentals Part 1**

[TryHackMe | Linux Fundamentals Part 1](https://tryhackme.com/room/linuxfundamentalspart1)

**Linux Fundamentals Part 2**

[TryHackMe | Linux Fundamentals Part 2](https://tryhackme.com/room/linuxfundamentalspart2)

**Linux Fundamentals Part 3**

[TryHackMe | Linux Fundamentals Part 3](https://tryhackme.com/room/linuxfundamentalspart3)

**Windows Fundamentals 1**

[TryHackMe | Windows Fundamentals 1](https://tryhackme.com/room/windowsfundamentals1xbx)

**Windows Fundamentals 2**

[TryHackMe | Windows Fundamentals 2](https://tryhackme.com/room/windowsfundamentals2x0x)

**Windows Fundamentals 3**

[TryHackMe | Windows Fundamentals 3](https://tryhackme.com/room/windowsfundamentals3xzx)

**Active Directory Basics**

[TryHackMe | Active Directory Basics](https://tryhackme.com/room/winadbasics)

**Principles of Security**

{% embed url="<https://tryhackme.com/room/principlesofsecurity>" %}

## **SOC Theory & Pratical**

**Intro to Defensive Security**

[TryHackMe | Cyber Security Training](https://tryhackme.com/room/defensivesecurity)

**Security Operations**

[TryHackMe | Cyber Security Training](https://tryhackme.com/room/securityoperations)

## Network Analysis

**Wireshark 101**

[TryHackMe | Cyber Security Training](https://tryhackme.com/room/wireshark)

**Wireshark: The Basics \[Walkthrough]**

{% embed url="<https://tryhackme.com/room/wiresharkthebasics>" %}

**Wireshark: Packet Operations \[Walkthrough]**

{% embed url="<https://tryhackme.com/room/wiresharkpacketoperations>" %}

**Wireshark: Traffic Analysis \[Walkthrough]**

{% embed url="<https://tryhackme.com/room/wiresharktrafficanalysis>" %}

**Carnage \[Challenge]**

{% embed url="<https://tryhackme.com/room/c2carnage>" %}

**Brim**

{% embed url="<https://tryhackme.com/room/brim>" %}

## Security Monitoring

**Core Windows Processes**

[TryHackMe | Cyber Security Training](https://tryhackme.com/room/btwindowsinternals)

**Sysinternals**

[TryHackMe | Cyber Security Training](https://tryhackme.com/room/btsysinternalssg)

**Windows Event Logs**

[TryHackMe | Cyber Security Training](https://tryhackme.com/room/windowseventlogs)

**Sysmon**

[TryHackMe | Cyber Security Training](https://tryhackme.com/room/sysmon)

## Osquery: The Basics <a href="#title" id="title"></a>

{% embed url="<https://tryhackme.com/room/osqueryf8>" %}

**Wazuh**

{% embed url="<https://tryhackme.com/room/wazuhct>" %}

**Cyber Kill Chain**

{% embed url="<https://tryhackme.com/room/cyberkillchainzmt>" %}

**Pyramid Of Pain**

{% embed url="<https://tryhackme.com/room/pyramidofpainax>" %}

**Introduction to SIEM**

{% embed url="<https://tryhackme.com/room/introtosiem>" %}

Splunk: Basics

\
[TryHackMe | Cyber Security Training](https://tryhackme.com/room/splunk101)

**Incident handling with Splunk**

[TryHackMe | Cyber Security Training](https://tryhackme.com/room/splunk201)

**MITRE**

{% embed url="<https://tryhackme.com/room/mitre>" %}

{% embed url="<https://tryhackme.com/room/wazuhct>" %}

**Splunk 2**

{% embed url="<https://tryhackme.com/room/splunk2gcd5>" %}

**What the Shell?**

{% embed url="<https://tryhackme.com/room/introtoshells>" %}

## Phishing Analysis <a href="#title" id="title"></a>

Phishing Analysis Fundamentals

{% embed url="<https://tryhackme.com/room/phishingemails1tryoe>" %}

**Phishing Emails in Action**

{% embed url="<https://tryhackme.com/room/phishingemails2rytmuv>" %}

Phishing Analysis Tools

{% embed url="<https://tryhackme.com/room/phishingemails3tryoe>" %}

&#x20;**Phishing Prevention**

{% embed url="<https://tryhackme.com/room/phishingemails4gkxh>" %}

&#x20;**The Greenholt Phish**

{% embed url="<https://tryhackme.com/room/phishingemails5fgjlzxc>" %}

&#x20;\
&#x20;

## **Basic F**orensics

**Volatility**

{% embed url="<https://tryhackme.com/room/bpvolatility>" %}

**Windows Forensics 1**

{% embed url="<https://tryhackme.com/room/windowsforensics1>" %}

**Windows Forensics 2**

{% embed url="<https://tryhackme.com/room/windowsforensics2>" %}

**Linux Forensics**

{% embed url="<https://tryhackme.com/room/linuxforensics>" %}

**Redline**

{% embed url="<https://tryhackme.com/room/btredlinejoxr3d>" %}

**Autopsy**

{% embed url="<https://tryhackme.com/room/btautopsye0>" %}

**Disk Analysis & Autopsy**

{% embed url="<https://tryhackme.com/room/btautopsye0>" %}

## Threat and Vulnerability Management

**Nessus**

{% embed url="<https://tryhackme.com/room/rpnessusredux>" %}

**Yara**

{% embed url="<https://tryhackme.com/room/yara>" %}

**MISP**

{% embed url="<https://tryhackme.com/room/misp>" %}

####

## Basic MAL Analysis “ optional” “ Recommended”

**Intro to Malware Analysis**

{% embed url="<https://tryhackme.com/room/intromalwareanalysis>" %}

**MAL: Malware Introductory**

{% embed url="<https://tryhackme.com/room/malmalintroductory>" %}

**MAL: Strings**

{% embed url="<https://tryhackme.com/room/malstrings>" %}

**Basic Malware RE**

{% embed url="<https://tryhackme.com/room/basicmalwarere>" %}

**MAL: REMnux - The Redux**

{% embed url="<https://tryhackme.com/room/malremnuxv2>" %}

\----

**CyberDefenders Challanges to improve your Skills**&#x20;

**WireDive**

[CyberDefenders: WireDive blueteam challenge.](https://cyberdefenders.org/blueteam-ctf-challenges/37)

**PacketMaze**

[CyberDefenders: PacketMaze blueteam challenge.](https://cyberdefenders.org/blueteam-ctf-challenges/68)

**EscapeRoom**

[CyberDefenders: EscapeRoom blueteam challenge.](https://cyberdefenders.org/blueteam-ctf-challenges/18)

**DeepDive**

[CyberDefenders: DeepDive blueteam challenge.](https://cyberdefenders.org/blueteam-ctf-challenges/78)

**HawkEye**

[CyberDefenders: HawkEye blueteam challenge.](https://cyberdefenders.org/blueteam-ctf-challenges/91)

**DumpMe**

[CyberDefenders: DumpMe blueteam challenge.](https://cyberdefenders.org/blueteam-ctf-challenges/65)

**Malware Traffic Analysis 1**

[CyberDefenders: Malware Traffic Analysis 1 blueteam challenge.](https://cyberdefenders.org/blueteam-ctf-challenges/17)

**Malware Traffic Analysis 2**

[CyberDefenders: Malware Traffic Analysis 2 blueteam challenge.](https://cyberdefenders.org/blueteam-ctf-challenges/20)

**Malware Traffic Analysis 3**

[CyberDefenders: Malware Traffic Analysis 3 blueteam challenge.](https://cyberdefenders.org/blueteam-ctf-challenges/21)

**Malware Traffic Analysis 4**

[CyberDefenders: Malware Traffic Analysis 4 blueteam challenge.](https://cyberdefenders.org/blueteam-ctf-challenges/57)

**Malware Traffic Analysis 5**

[CyberDefenders: Malware Traffic Analysis 5 blueteam challenge.](https://cyberdefenders.org/blueteam-ctf-challenges/58)

**Malware Traffic Analysis 6**

[CyberDefenders: Malware Traffic Analysis 6 blueteam challenge.](https://cyberdefenders.org/blueteam-ctf-challenges/59)

**Seized**

[CyberDefenders: Seized blueteam challenge.](https://cyberdefenders.org/blueteam-ctf-challenges/92)

**Pwned-DC**

[CyberDefenders: Pwned-DC blueteam challenge.](https://cyberdefenders.org/blueteam-ctf-challenges/89)

**BankingTroubles**

[CyberDefenders: BankingTroubles blueteam challenge.](https://cyberdefenders.org/blueteam-ctf-challenges/43)

**HoneyBOT**

<https://cyberdefenders.org/blueteam-ctf-challenges/45>

**Hunter**

[CyberDefenders: Hunter blueteam challenge.](https://cyberdefenders.org/blueteam-ctf-challenges/32)

**Ulysses**

[CyberDefenders: Ulysses blueteam challenge.](https://cyberdefenders.org/blueteam-ctf-challenges/41)

**Injector**

[CyberDefenders: Injector blueteam challenge.](https://cyberdefenders.org/blueteam-ctf-challenges/23)

**Insider**

[CyberDefenders: Insider blueteam challenge.](https://cyberdefenders.org/blueteam-ctf-challenges/64)

**Hacked**

[CyberDefenders: Hacked blueteam challenge.](https://cyberdefenders.org/blueteam-ctf-challenges/71)

**CyberCorp Case 1**

[CyberDefenders: CyberCorp Case 1 blueteam challenge.](https://cyberdefenders.org/blueteam-ctf-challenges/74)

**MrRobot**

[CyberDefenders: MrRobot blueteam challenge.](https://cyberdefenders.org/blueteam-ctf-challenges/88)

**Hammered**

[CyberDefenders: Hammered blueteam challenge.](https://cyberdefenders.org/blueteam-ctf-challenges/42)

—

**Elastic-Case**

[CyberDefenders: Elastic-Case blueteam challenge.](https://cyberdefenders.org/blueteam-ctf-challenges/90)

**LTE Fallen Wall**

[CyberDefenders: LTE Fallen Wall blueteam challenge.](https://cyberdefenders.org/blueteam-ctf-challenges/54)

**Boss Of The SOC v1**

[CyberDefenders: Boss Of The SOC v1 blueteam challenge.](https://cyberdefenders.org/blueteam-ctf-challenges/15)

**Boss Of The SOC v2**

[CyberDefenders: Boss Of The SOC v2 blueteam challenge.](https://cyberdefenders.org/blueteam-ctf-challenges/16)

**Qradar101**

[**https://cyberdefenders.org/blueteam-ctf-challenges/39**](https://cyberdefenders.org/blueteam-ctf-challenges/39)


---

# Agent Instructions: Querying This Documentation

If you need additional information that is not directly available in this page, you can query the documentation dynamically by asking a question.

Perform an HTTP GET request on the current page URL with the `ask` query parameter:

```
GET https://0xmedhat.gitbook.io/whoami/soc-roadmap-rooms-and-challanges-zero-2-hero.md?ask=<question>
```

The question should be specific, self-contained, and written in natural language.
The response will contain a direct answer to the question and relevant excerpts and sources from the documentation.

Use this mechanism when the answer is not explicitly present in the current page, you need clarification or additional context, or you want to retrieve related documentation sections.
