SolarWinds Orion Compromise
Reconstruct the timeline and analyze public indicators of compromise (IOCs) from the SolarWinds Orion supply-chain attack.
Defensive OSINT lab
Practice OSINT, source validation, and incident analysis with safe fictionalized cases.
This lab uses fictionalized/sanitized data. Do not use it to target people, expose identities, or test live systems.
2D Pixel Analyst Profile
Level 1 / Analyst Trainee
The profile token is stored in this browser. The leaderboard only shows nickname, score and solved count.
After the first save, solves are written to the backend leaderboard.
Public profile link
Create a nickname first to get a shareable profile link.
Badges
Leaderboard
Only nickname, score and solved count are shown. Flag values are never shared.
Loading...
Pick a case, review the evidence, write your defensive report.
Reconstruct the timeline and analyze public indicators of compromise (IOCs) from the SolarWinds Orion supply-chain attack.
Map the exploitation timeline of CVE-2023-34362 in MOVEit Transfer and assess the extortion campaign behavior.
Trace the cascading supply-chain compromise of the 3CX DesktopApp and identify attacker infrastructure.
Analyze the public communications, threat actor claims, and official reports of the Colonial Pipeline ransomware incident.
Analyze the support-system breach at Okta, evaluating HTTP Archive (HAR) file security risks and token hijacking vectors.
Jump to the evidence log or the report builder.