Disclaimer: This writeup is based on a Capture The Flag (CTF) challenge hosted on TryHackMe and it is intended for educational purposes only.

Defensive security is the process of defending and securing devices and systems.

Before you can defend a system, you need to understand what defenders are responsible for. Defensive security focuses on detecting and investigating attacks, and responding before damage occurs.

Unlike offensive security, you do not attack systems, instead, you monitor and protect them.

Task 1 Think like a Defender

What is the main goal of defensive security?

  • Detect and respond to attacks
  • Attack systems to find flaws

Detect and respond to attacks

Task 2 Detect Suspicious Activity

Which source IP address is generating the suspicious traffic?

32.122.195.63

Task 3 Identify the Attack

Copy the latest URL that the attacker has tried to find and paste it below.

https://fakebank.com/admin

Task 4 Stop the Attack

When the success message apears, copy the flag and paste it below.

THM{FAKEBANK-SECURED}