🛡️ Let's Defend Writeups
SOC137 – Malicious File/Script Download Attempt (Macro-Based DOCM Blocked)
March 25, 2026
SOC105 – Suspicious URL Request (Bitly Redirect – Benign Activity)
March 25, 2026
SOC105 – Suspicious URL Request (Firewall Test Activity)
March 25, 2026
SOC105 – Suspicious URL Request (Benign GitHub Resource)
March 25, 2026
SOC105 – Malicious URL Access Leading to Trojan Infection
March 25, 2026
SOC145 – Ransomware Detected (Avaddon Ransomware Infection)
March 19, 2026
SOC104 – Malware Detected (WinRAR False Positive Investigation)
March 19, 2026
SOC282 – Phishing Alert Escalated to Malware Execution via ZIP Payload
March 18, 2026
SOC138 – Suspicious XLSM File Detected (Malicious Macro-Based Infection)
March 18, 2026
SOC119 – Proxy Alert: Malicious Executable File Detected (False Positive)
March 18, 2026
SOC109 – Emotet Malware Detected (Malicious Word Document Infection)
March 18, 2026
SOC104 – Malware Detected (GoogleUpdate.exe False Positive)
March 18, 2026
SOC104 – Malware Detected (Invoice.exe Maze Ransomware Infection)
March 18, 2026
SOC168 – Command Injection Leading to Remote Code Execution
February 28, 2026
SOC167 – LS Command Detected in Requested URL (False Positive)
February 28, 2026
SOC166 – Javascript Code Detected in Requested URL (XSS Scanning Attempt)
February 28, 2026
SOC165 – SQL Injection Attempt Against Internal Web Server
February 28, 2026
SOC141 – Phishing URL Escalation to Emotet Infection
February 27, 2026
SOC120 – Phishing Mail Detected (Internal to Internal) – False Positive
February 27, 2026
SOC114 – Malicious Attachment Detected (Phishing Alert)
February 27, 2026
SOC170 – Passwd Found in Requested URL – Possible LFI Attempt
March 01, 2022
SOC169 – Possible IDOR Attack Detected
February 28, 2022