Elastic with Winlogbeat Hands-on Sandbox
In this lab, you will have the opportunity to use Elastic with Winlogbeat to detect endpoint attack TTPs. Available TTPs are updated regularly, so check back often!
Terms and conditions apply.
Lab info
Lab author
Challenge
Getting Started with Endpoint Sandboxes
Here are the initial instructions and explanation for using our Endpoint Sandbox lab environment. Read this while your environment is busy creating itself from nothing. Yes, this violates physics; we know. How fun!
Challenge
Using Elastic with Winlogbeat in the Sandbox
Use the Attack Application to simulate endpoint attacks, and then use the Elastic with Winlogbeat to detect them!
Provided environment for hands-on practice
We will provide the credentials and environment necessary for you to practice right within your browser.
Guided walkthrough
Follow along with the author’s guided walkthrough and build something new in your provided environment!
Did you know?
On average, you retain 75% more of your learning if you get time for practice.
Recommended prerequisites
- Understanding of how to use Elastic with Winlogbeat