Skip to content
@HellCatLabs

HellCat Labs

Labs and tools for SOC analysts, detection engineers, and blue teamers. Learn by building. Stay sharp. 🛡️

🐾 HellCatLabs

🎓 Hands-on cybersecurity labs for beginners, by @Sn0wAlice
👩‍💻 Learn SOC, scripting, detection engineering, and security automation — the fun way.


🚀 What is this?

HellCatLabs is a collection of simple, guided labs designed to help you:

  • Understand how a SOC works
  • Practice detection & triage
  • Automate security analysis with code
  • Build your own tools as a SOC engineer

Each lab is self-contained, beginner-friendly, and built to be completed in under an hour.


📚 Available Labs

Lab Description Difficulty
ioc-extractor-lite Build a Python script to extract IOCs from log files 🟢 Easy
sigmad Use Sigma rules to detect threats in log data 🟢 Easy
(build in progress...) (enrich alerts, parse logs, generate fake incidents...) 🟡 Medium ?

🧠 Philosophy

We believe the best way to learn cybersecurity is by doing.
No theory dumps. Just small, focused exercises with real-world flavor.


🤝 Contribute

Want to share your own lab or help improve an existing one?
Check our contribution guide (soon) or open an issue/discussion.


🐈‍⬛ About

Created by @Sn0wAlice
Maintained by the HellCatLabs team.
Feel free to fork, learn, and spread the labs!

Pinned Loading

  1. ioc-extractor-lite ioc-extractor-lite Public

    🛠️ Lightweight CLI tool to extract IOCs (Indicators of Compromise) from raw log files. Supports IP addresses, domains, URLs, and common hash formats. Ideal for beginner SOC analysts and automation …

    Python 1

  2. sigmad sigmad Public

    🧠 Lightweight Sigma rule engine in Python — scan log files locally, match Sigma rules, and detect suspicious activity without a SIEM.

    Python 1

Repositories

Showing 6 of 6 repositories

Top languages

Loading…

Most used topics

Loading…