| @@ -233,6 +233,18 @@ | ||
| </div> | ||
| </a> | ||
| + | <a class="card" href="https://github.com/zionboggan/purple-team-lab"> | |
| + | <div class="thumb"><img loading="lazy" src="assets/purple.png" alt="Emulated ATT&CK techniques detected in Wazuh"></div> | |
| + | <div class="body"> | |
| + | <h3>Purple-Team Lab</h3> | |
| + | <p>Adversary emulation that validates the detections. Atomic Red Team techniques run | |
| + | against an instrumented endpoint; custom Wazuh rules catch each one, with a coverage | |
| + | matrix proving the ATT&CK techniques fire at the right severity.</p> | |
| + | <div class="tags"><span>Atomic Red Team</span><span>Caldera</span><span>Wazuh FIM</span><span>MITRE ATT&CK</span></div> | |
| + | <span class="lnk mono">purple-team-lab</span> | |
| + | </div> | |
| + | </a> | |
| + | ||
| <a class="card" href="https://github.com/zionboggan/soc-automation-lab"> | ||
| <div class="thumb"><img loading="lazy" src="assets/soc.png" alt="Wazuh Threat Hunting dashboard with MITRE ATT&CK mapping"></div> | ||
| <div class="body"> |