> For the complete documentation index, see [llms.txt](https://0xmedhat.gitbook.io/whoami/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://0xmedhat.gitbook.io/whoami/soc-roadmap-rooms-and-challanges-zero-2-hero.md).

# SOC Roadmap "Rooms and Challanges zero 2 hero "

THM

## **Pre Security**

**What is Networking?**

[TryHackMe | What is Networking?](https://tryhackme.com/room/whatisnetworking)

**Introductory Networking**

[TryHackMe | Introductory Networking](https://tryhackme.com/room/introtonetworking)

**Network Services**

[TryHackMe | Cyber Security Training](https://tryhackme.com/room/networkservices)

**Network Services 2**

[TryHackMe | Cyber Security Training](https://tryhackme.com/room/networkservices2)

**Intro to LAN**

[TryHackMe | Intro to LAN](https://tryhackme.com/room/introtolan)

**OSI Model**

[TryHackMe | Cyber Security Training](https://tryhackme.com/room/osimodelzi)

**Packets & Frames**

[TryHackMe | Cyber Security Training](https://tryhackme.com/room/packetsframes)

**Extending Your Network**

[TryHackMe | Cyber Security Training](https://tryhackme.com/room/extendingyournetwork)

**DNS in detail**

[TryHackMe | DNS in detail](https://tryhackme.com/room/dnsindetail)

**HTTP in detail**

[TryHackMe | HTTP in detail](https://tryhackme.com/room/httpindetail)

**How websites work**

[TryHackMe | Cyber Security Training](https://tryhackme.com/room/howwebsiteswork)

**Linux Fundamentals Part 1**

[TryHackMe | Linux Fundamentals Part 1](https://tryhackme.com/room/linuxfundamentalspart1)

**Linux Fundamentals Part 2**

[TryHackMe | Linux Fundamentals Part 2](https://tryhackme.com/room/linuxfundamentalspart2)

**Linux Fundamentals Part 3**

[TryHackMe | Linux Fundamentals Part 3](https://tryhackme.com/room/linuxfundamentalspart3)

**Windows Fundamentals 1**

[TryHackMe | Windows Fundamentals 1](https://tryhackme.com/room/windowsfundamentals1xbx)

**Windows Fundamentals 2**

[TryHackMe | Windows Fundamentals 2](https://tryhackme.com/room/windowsfundamentals2x0x)

**Windows Fundamentals 3**

[TryHackMe | Windows Fundamentals 3](https://tryhackme.com/room/windowsfundamentals3xzx)

**Active Directory Basics**

[TryHackMe | Active Directory Basics](https://tryhackme.com/room/winadbasics)

**Principles of Security**

{% embed url="<https://tryhackme.com/room/principlesofsecurity>" %}

## **SOC Theory & Pratical**

**Intro to Defensive Security**

[TryHackMe | Cyber Security Training](https://tryhackme.com/room/defensivesecurity)

**Security Operations**

[TryHackMe | Cyber Security Training](https://tryhackme.com/room/securityoperations)

## Network Analysis

**Wireshark 101**

[TryHackMe | Cyber Security Training](https://tryhackme.com/room/wireshark)

**Wireshark: The Basics \[Walkthrough]**

{% embed url="<https://tryhackme.com/room/wiresharkthebasics>" %}

**Wireshark: Packet Operations \[Walkthrough]**

{% embed url="<https://tryhackme.com/room/wiresharkpacketoperations>" %}

**Wireshark: Traffic Analysis \[Walkthrough]**

{% embed url="<https://tryhackme.com/room/wiresharktrafficanalysis>" %}

**Carnage \[Challenge]**

{% embed url="<https://tryhackme.com/room/c2carnage>" %}

**Brim**

{% embed url="<https://tryhackme.com/room/brim>" %}

## Security Monitoring

**Core Windows Processes**

[TryHackMe | Cyber Security Training](https://tryhackme.com/room/btwindowsinternals)

**Sysinternals**

[TryHackMe | Cyber Security Training](https://tryhackme.com/room/btsysinternalssg)

**Windows Event Logs**

[TryHackMe | Cyber Security Training](https://tryhackme.com/room/windowseventlogs)

**Sysmon**

[TryHackMe | Cyber Security Training](https://tryhackme.com/room/sysmon)

## Osquery: The Basics <a href="#title" id="title"></a>

{% embed url="<https://tryhackme.com/room/osqueryf8>" %}

**Wazuh**

{% embed url="<https://tryhackme.com/room/wazuhct>" %}

**Cyber Kill Chain**

{% embed url="<https://tryhackme.com/room/cyberkillchainzmt>" %}

**Pyramid Of Pain**

{% embed url="<https://tryhackme.com/room/pyramidofpainax>" %}

**Introduction to SIEM**

{% embed url="<https://tryhackme.com/room/introtosiem>" %}

Splunk: Basics

\
[TryHackMe | Cyber Security Training](https://tryhackme.com/room/splunk101)

**Incident handling with Splunk**

[TryHackMe | Cyber Security Training](https://tryhackme.com/room/splunk201)

**MITRE**

{% embed url="<https://tryhackme.com/room/mitre>" %}

{% embed url="<https://tryhackme.com/room/wazuhct>" %}

**Splunk 2**

{% embed url="<https://tryhackme.com/room/splunk2gcd5>" %}

**What the Shell?**

{% embed url="<https://tryhackme.com/room/introtoshells>" %}

## Phishing Analysis <a href="#title" id="title"></a>

Phishing Analysis Fundamentals

{% embed url="<https://tryhackme.com/room/phishingemails1tryoe>" %}

**Phishing Emails in Action**

{% embed url="<https://tryhackme.com/room/phishingemails2rytmuv>" %}

Phishing Analysis Tools

{% embed url="<https://tryhackme.com/room/phishingemails3tryoe>" %}

&#x20;**Phishing Prevention**

{% embed url="<https://tryhackme.com/room/phishingemails4gkxh>" %}

&#x20;**The Greenholt Phish**

{% embed url="<https://tryhackme.com/room/phishingemails5fgjlzxc>" %}

&#x20;\
&#x20;

## **Basic F**orensics

**Volatility**

{% embed url="<https://tryhackme.com/room/bpvolatility>" %}

**Windows Forensics 1**

{% embed url="<https://tryhackme.com/room/windowsforensics1>" %}

**Windows Forensics 2**

{% embed url="<https://tryhackme.com/room/windowsforensics2>" %}

**Linux Forensics**

{% embed url="<https://tryhackme.com/room/linuxforensics>" %}

**Redline**

{% embed url="<https://tryhackme.com/room/btredlinejoxr3d>" %}

**Autopsy**

{% embed url="<https://tryhackme.com/room/btautopsye0>" %}

**Disk Analysis & Autopsy**

{% embed url="<https://tryhackme.com/room/btautopsye0>" %}

## Threat and Vulnerability Management

**Nessus**

{% embed url="<https://tryhackme.com/room/rpnessusredux>" %}

**Yara**

{% embed url="<https://tryhackme.com/room/yara>" %}

**MISP**

{% embed url="<https://tryhackme.com/room/misp>" %}

####

## Basic MAL Analysis “ optional” “ Recommended”

**Intro to Malware Analysis**

{% embed url="<https://tryhackme.com/room/intromalwareanalysis>" %}

**MAL: Malware Introductory**

{% embed url="<https://tryhackme.com/room/malmalintroductory>" %}

**MAL: Strings**

{% embed url="<https://tryhackme.com/room/malstrings>" %}

**Basic Malware RE**

{% embed url="<https://tryhackme.com/room/basicmalwarere>" %}

**MAL: REMnux - The Redux**

{% embed url="<https://tryhackme.com/room/malremnuxv2>" %}

\----

**CyberDefenders Challanges to improve your Skills**&#x20;

**WireDive**

[CyberDefenders: WireDive blueteam challenge.](https://cyberdefenders.org/blueteam-ctf-challenges/37)

**PacketMaze**

[CyberDefenders: PacketMaze blueteam challenge.](https://cyberdefenders.org/blueteam-ctf-challenges/68)

**EscapeRoom**

[CyberDefenders: EscapeRoom blueteam challenge.](https://cyberdefenders.org/blueteam-ctf-challenges/18)

**DeepDive**

[CyberDefenders: DeepDive blueteam challenge.](https://cyberdefenders.org/blueteam-ctf-challenges/78)

**HawkEye**

[CyberDefenders: HawkEye blueteam challenge.](https://cyberdefenders.org/blueteam-ctf-challenges/91)

**DumpMe**

[CyberDefenders: DumpMe blueteam challenge.](https://cyberdefenders.org/blueteam-ctf-challenges/65)

**Malware Traffic Analysis 1**

[CyberDefenders: Malware Traffic Analysis 1 blueteam challenge.](https://cyberdefenders.org/blueteam-ctf-challenges/17)

**Malware Traffic Analysis 2**

[CyberDefenders: Malware Traffic Analysis 2 blueteam challenge.](https://cyberdefenders.org/blueteam-ctf-challenges/20)

**Malware Traffic Analysis 3**

[CyberDefenders: Malware Traffic Analysis 3 blueteam challenge.](https://cyberdefenders.org/blueteam-ctf-challenges/21)

**Malware Traffic Analysis 4**

[CyberDefenders: Malware Traffic Analysis 4 blueteam challenge.](https://cyberdefenders.org/blueteam-ctf-challenges/57)

**Malware Traffic Analysis 5**

[CyberDefenders: Malware Traffic Analysis 5 blueteam challenge.](https://cyberdefenders.org/blueteam-ctf-challenges/58)

**Malware Traffic Analysis 6**

[CyberDefenders: Malware Traffic Analysis 6 blueteam challenge.](https://cyberdefenders.org/blueteam-ctf-challenges/59)

**Seized**

[CyberDefenders: Seized blueteam challenge.](https://cyberdefenders.org/blueteam-ctf-challenges/92)

**Pwned-DC**

[CyberDefenders: Pwned-DC blueteam challenge.](https://cyberdefenders.org/blueteam-ctf-challenges/89)

**BankingTroubles**

[CyberDefenders: BankingTroubles blueteam challenge.](https://cyberdefenders.org/blueteam-ctf-challenges/43)

**HoneyBOT**

<https://cyberdefenders.org/blueteam-ctf-challenges/45>

**Hunter**

[CyberDefenders: Hunter blueteam challenge.](https://cyberdefenders.org/blueteam-ctf-challenges/32)

**Ulysses**

[CyberDefenders: Ulysses blueteam challenge.](https://cyberdefenders.org/blueteam-ctf-challenges/41)

**Injector**

[CyberDefenders: Injector blueteam challenge.](https://cyberdefenders.org/blueteam-ctf-challenges/23)

**Insider**

[CyberDefenders: Insider blueteam challenge.](https://cyberdefenders.org/blueteam-ctf-challenges/64)

**Hacked**

[CyberDefenders: Hacked blueteam challenge.](https://cyberdefenders.org/blueteam-ctf-challenges/71)

**CyberCorp Case 1**

[CyberDefenders: CyberCorp Case 1 blueteam challenge.](https://cyberdefenders.org/blueteam-ctf-challenges/74)

**MrRobot**

[CyberDefenders: MrRobot blueteam challenge.](https://cyberdefenders.org/blueteam-ctf-challenges/88)

**Hammered**

[CyberDefenders: Hammered blueteam challenge.](https://cyberdefenders.org/blueteam-ctf-challenges/42)

—

**Elastic-Case**

[CyberDefenders: Elastic-Case blueteam challenge.](https://cyberdefenders.org/blueteam-ctf-challenges/90)

**LTE Fallen Wall**

[CyberDefenders: LTE Fallen Wall blueteam challenge.](https://cyberdefenders.org/blueteam-ctf-challenges/54)

**Boss Of The SOC v1**

[CyberDefenders: Boss Of The SOC v1 blueteam challenge.](https://cyberdefenders.org/blueteam-ctf-challenges/15)

**Boss Of The SOC v2**

[CyberDefenders: Boss Of The SOC v2 blueteam challenge.](https://cyberdefenders.org/blueteam-ctf-challenges/16)

**Qradar101**

[**https://cyberdefenders.org/blueteam-ctf-challenges/39**](https://cyberdefenders.org/blueteam-ctf-challenges/39)
