Incident response case studies with Blue Team Labs Online
Ασκήσεις απόκρισης σε περιστατικά με το Blue Team Labs Online

Bachelor Dissertation
Author
Loizou, Pavlos
Λοιζου, Παύλος
Date
2025-09View/ Open
Keywords
Cybersecurity investigationsAbstract
This thesis investigates cybersecurity incident response through the Blue Team Labs Online (BTLO) platform. Nineteen case studies were conducted, covering memory analysis, log inspection, malicious executables, and persistence techniques. Open-source tools such as Wireshark, Volatility, and Sysmon were applied to detect, investigate, and document the incidents. Each case is aligned with international frameworks (NIST SP 800-61, ISO/IEC 27035), while broader challenges in digital forensics are discussed, including automation, anti-forensic techniques, and the need for forensic readiness. The findings highlight the value of realistic, hands-on scenarios for the effective training and preparation of SOC analysts.


