Menu
ls111's Cybersecurity Blog
  • Home
  • Contact
ls111's Cybersecurity Blog

Category: Blue Team/Defensive

How to Integrate Cortex & MISP with TheHive in your SOC

Posted on June 24, 2022September 19, 2023 by wp_writer

In Episode 11 of our cyber security virtual lab building series, we are going to integrate Cortex and MISP with TheHive bringing our Security Operations Center (SOC) one step closer to our goal of implementing Security Orchestration, Automation and Response (SOAR) within our SOC. To recap, TheHive is a security incident response platform (SIRP), and…

TheHive, Cortex & MISP Installation Using Docker Compose: Ep10

Posted on June 16, 2022September 19, 2023 by wp_writer

In Episode 10 of our cyber security virtual lab building series, we are going to install TheHive, Cortex and MISP using Docker containers by leveraging the Docker Compose tool and using .YAML to define our deployment. To recap, TheHive is a security incident response platform (SIRP) used by cyber security professionals to manage and track…

Wazuh SIEM & XDR Agent Installation – Virtual Lab Building Series: Ep9

Posted on June 9, 2022September 19, 2023 by wp_writer

In Episode 9 of our cyber security virtual lab building series, we are going to install and explore the Wazuh Security Platform which is a SIEM (Security Incident & Event Management) platform, as well as its Linux and Windows XDR/EDR agents. In this lab we will look at how to deploy the prebuilt Wazuh OVA…

Intro to Cyber Security Operations (SOC) – Blue vs Red Team – Virtual Lab Building Series: Ep8

Posted on May 27, 2022September 19, 2023 by wp_writer

In Episode 8 of our cyber security virtual lab building series, we set the stage and some future goals as to where we are heading with this series. We briefly recap the first 7 videos, showcasing OPNSense and introduce both blue team and read team cyber security operations into our lab. For our cybersecurity blue…

OPNSense – Unlock Next-Generation Firewall features with Zenarmor – Virtual Lab Building Series: Ep7

Posted on April 29, 2022September 19, 2023 by wp_writer

In episode 7 of our cyber security virtual lab building series, we continue with our OPNSense firewall configuration and learn how to unlock and setup Next-Generation Firewall (NGFW) features using Sunny Valley Networks Zenarmor (Sensei) plugins. We will explore the various dashboards and policies on offer and discuss Zenarmors features and use cases. By the…

OPNSense Firewall Multi-WAN Failover and Load Balancing – Virtual Lab Building Series: Ep 6

Posted on March 25, 2022September 19, 2023 by wp_writer

In episode 6 of our cyber security virtual lab building series, we continue with our OPNSense firewall configuration and configure the Multi-WAN failover and Load Balancing features, to create redundant paths to the internet. We will cover the VirtualBox network adapter configurations, setup gateway monitor and groups as well as modify some firewall and DNS…

OPNSense Firewall High Availability (HA), CARP, pfSync Config – Virtual Lab Building Series: Ep 5

Posted on March 24, 2022September 19, 2023 by wp_writer

In episode 5 of our cyber security virtual lab building series, we continue with our OPNSense firewall configuration and configure the High Availability (HA), CARP and pfSync features, to create a redundant firewall cluster setup. We will explore the master and backup firewall configs, setup virtual IP’s, configure pfSync, firewall rules and outbound NAT. By…

OPNsense Web Filtering/Proxy Configuration – Virtual Lab Building Series: Ep4

Posted on March 2, 2022September 19, 2023 by wp_writer

In episode 4 of our cyber security virtual lab building series, we continue with our Opnsense firewall configuration and configure the transparent proxy and web filtering features. We will also look at how to setup a blacklist and use it prevent users from accessing social networking websites in this demo. By the end of this…

Suricata IDS/IPS Installation on OPNsense – Virtual Lab Building Series: Ep3

Posted on February 20, 2022September 19, 2023 by wp_writer

In episode 3 of our cyber security virtual lab building series, we continue with our Opnsense firewall configuration and install the IDS/IPS features based on Suricata. We will look at the Emerging Threat rule sets including their pro telemetry provided by ProofPoint, and even learn how to write our own Suricata rules from scratch. I…

OPNsense Firewall Installation – Virtual Lab Building Series: Ep2

Posted on February 15, 2022September 19, 2023 by wp_writer

This is episode 2 of the Cyber Security virtual lab building series where we look at how to install the Opnsense firewall in Virtualbox as well as some basic interface and IP address configurations. By the end of this video you will have a fully functional lab firewall that you can access via its Web…

  • Previous
  • 1
  • 2
  • 3
  • 4
  • Next

Welcome to my blog! I discuss and showcase various cybersecurity topics. If you prefer to learn through watching video, please check out my YouTube channel, most of the content here also has a video version.

YouTube Channel
GitHub

Search by Category

  • Active Directory
  • Blue Team/Defensive
  • Cyber Security Lab Building Series
  • datadog
  • docker
  • Elasticsearch
  • General Cybersecurity
  • Kibana
  • Logstash
  • Network Security
  • OPNSense Firewall
  • Red Team/Pen Testing
  • SASE
  • Security Compliance
  • SIEM
  • Splunk Enterprise
  • TryHackMe Labs
  • Ubuntu Linux
  • Virtualization
  • Wazuh SIEM & XDR
  • Zenarmor NGFW

Search by Date

  • November 2023
  • October 2023
  • September 2023
  • August 2023
  • July 2023
  • June 2023
  • May 2023
  • April 2023
  • March 2023
  • February 2023
  • December 2022
  • October 2022
  • September 2022
  • June 2022
  • May 2022
  • April 2022
  • March 2022
  • February 2022
  • January 2022
  • December 2021
©2025 ls111's Cybersecurity Blog | Powered by Superb Themes