Somehow I Hack

  • Home
  • SOC Lab
  • Challenges
  • Fun with Flags
  • Home
  • SOC Lab
  • Challenges
  • Fun with Flags

Somehow I Hack

  • Home
  • SOC Lab
  • Challenges
  • Fun with Flags
  • Home
  • SOC Lab
  • Challenges
  • Fun with Flags

Fun With (red) Flags

Here you’ll find realistic security alert investigations based on Let’sDefend’s Practice SOC environment. Each case simulates a real-world alert lifecycle: from triage to containment to reporting.

Browse the investigations

  • ID-014 | SOC104 – Malware Detected | LetsDefend Walkthrough
  • ID-020 | SOC105 – Requested T.I. URL address | LetsDefend Walkthrough
  • ID-036 | SOC104 – Malware Detected | LetsDefend Walkthrough
  • ID-045 | SOC114 – Malicious Attachment Detected | LetsDefend Walkthrough
  • ID-084 | SOC104 – Malware Detected | Letsdefend Walkthrough
  • ID-085 | SOC109 – Emotet Malware Detected | LetsDefend Walkthrough
  • ID-092 | SOC145 – Ransomware Detected | Letsdefend Walkthrough
  • ID-120 | SOC170 – Password Found in Requested URL | LetsDefend Walkthrough
  • ID-208 | SOC246 – Forced Authentication Detected | Letsdefend Walkthrough
  • ID-212 | SOC250 – APT35 HyperScrape Data Exfiltration Tool Detected | Letsdefend Walkthrough
  • ID-234 | SOC176 – RDP Brute Force Detected | Letsdefend Walkthrough
  • ID-257 | SOC282 – Phishing Alert | LetsDefend Walkthrough

© 2025 SomehowIhack | Cybersecurity Portfolio

This site uses cookies. Sadly, not the chocolate chip kind.

Apparently we have to tell you this: yes, cookies are used. They're not edible, and no, you can't escape them — but you can pick what gets tracked. Yay for EU law!

Bare minimum Always active
These make the site usable. Disable them and everything might explode. Your call.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Not selling anything (yet)
The technical storage or access that is used exclusively for statistical purposes. Helps me know someone actually visited this page and didn’t just bounce. Chill stuff, I promise.
Not used (yet)
If I ever sell out and add trackers, this is where they’ll show up. For now, nada.
Manage options Manage services Manage {vendor_count} vendors Read more about these purposes
Let me micromanage
{title} {title} {title}