thabosakonta-wq/SOC-Analyst-Knowledge-Base

GitHub: thabosakonta-wq/SOC-Analyst-Knowledge-Base

一个持续维护的 SOC 分析师综合知识库,系统整理安全运营、威胁狩猎、检测工程、DFIR 及 Microsoft Sentinel 等领域的实战笔记与备考资料。

Stars: 0 | Forks: 0

- 暴力破解 - 权限提升 - 内部威胁 - 不可能旅行 - 可疑身份验证 ## 第 8 卷 — 修订笔记 快速参考笔记涵盖: - Windows Event ID - Linux 命令 - MITRE ATT&CK - 网络 - PowerShell - Bash - Python - Microsoft Sentinel - Detection Engineering # 涵盖技能 - Security Operations - Threat Hunting - Detection Engineering - Incident Response - 数字取证 - Microsoft Sentinel - Microsoft Defender XDR - MITRE ATT&CK - Windows 安全 - Linux 安全 - 网络 - SIEM - KQL - Bash - Python # 认证 - Microsoft 认证:Security Operations Analyst Associate (SC-200) - Google Cybersecurity 专业证书 - Cybersecurity 职业基础 - Generative AI 职业基础 # 当前状态 随着我通过实践实验室、Microsoft 技术和 SOC 调查不断扩展我的网络安全知识,本仓库将持续更新。 # 作者 **Thabo Sakonta** Microsoft 认证 Security Operations Analyst (SC-200) LinkedIn https://www.linkedin.com/in/thabo-sakonta-377a3748 GitHub https://github.com/thabosakonta-wq # 许可证 仅用于教育和作品集展示目的。
标签:AI合规, 学习资源, 安全运营, 应用安全, 扫描框架, 数字取证与应急响应, 网络安全, 逆向工具, 隐私保护