Threat Hunt Lab
5 HUNTS · HYPOTHESIS-DRIVEN · MITRE ATT&CK ALIGNED
HUNT METHODOLOGY
Each exercise follows a structured approach: Hypothesis → Data Sources → Hunt Query → Expected IOCs → ATT&CK Mapping.
Use the provided KQL/SPL queries in your SIEM, analyse the evidence, then mark each step complete to earn XP.