CYBERCORP  //  SECURE ACCESS

CyberCorp Operations Center

Blue Team Network Defense Division

Blue Team Active
Security Posture Elevated
Threat Monitoring Online
Current Role Cybersecurity Intern

Career Track

Current Role Cybersecurity Intern
Next Promotion Junior SOC Analyst
0% toward Junior SOC Analyst
Career Path
  • Junior SOC Analyst
  • SOC Analyst
  • Incident Responder
  • Cyber Defense Specialist

Active Assignments

  • 01
    Credential Phishing Investigation Investigate a compromised analyst workstation.
    Available
  • 02
    Network Exposure Review Map exposed services across the network.
    Locked
  • 03
    Reconnaissance Detection Detect early-stage adversary reconnaissance.
    Monitoring
Sarah Reyes Lead Analyst
TRANSMISSION

Welcome to Blue Team Operations. Your first assignments are designed to build your investigation, evidence handling, and incident response judgment.

Live Threat Status

  • Credential phishing activity detected
  • External probing activity monitored
  • Reconnaissance activity under observation
  • Containment status: Stable
  • Red Team Activity: Monitored
XP 0 Trust 50

Analyst Profile

Blue Team Analyst Cybersecurity Intern
Operational Reputation Awaiting First Assignment
Career Readiness: Onboarding
  • Containment RatingDeveloping
  • Threat ResponseDeveloping
  • Manager TrustModerate

Previous Operations

  • No operations on record yet. Complete your first assignment to begin building your operational history.
No saved progress yet
MISSION 02 · Network Exposure Review

Identify devices & services on the network

Run the commands in order. Each one unlocks the next.

Mission Control
01 Workstation
02 Network
03 Recon
BLUE TEAM DEFENDING
TeamBlue Team
RoleCybersecurity Intern
AssignmentMap the network
IncidentMonitoring
Containment Progress 0%

Awaiting service scan.

Incident Pressure Stable
Sarah Reyes Lead Analyst · Your Supervisor
ONLINE
Welcome back. Mission 2 is a network reconnaissance exercise. Click any unlocked command to begin.

You're transitioning from workstation forensics to network reconnaissance. Map the local network, find a target host, and identify what services it's exposing.

By the end of this mission you'll know how to identify your local IP, test host reachability with ping, discover open ports with nmap, and reason about what those services mean.

  • Identifying your local IP
  • Testing host reachability with ping
  • Discovering open services with nmap
  • Reviewing exposed network services
    TERMINAL student@cybercorp
    student@cybercorp:~$
    COMMANDS New commands unlock as you progress
    Current Objective
    Start by identifying your local IP address.
    💡 HINT Start by identifying your local IP address.

    Click an unlocked command to run it in the terminal. More commands unlock as you progress.

    Identify Network
    Test Reachability
    Scan Services
    Review
    MISSION 03 · Reconnaissance Detection

    Detect reconnaissance against the network

    Run the commands in order. Each one unlocks the next.

    Mission Control
    01 Workstation
    02 Network
    03 Recon
    BLUE TEAM DEFENDING
    TeamBlue Team
    RoleCybersecurity Intern
    AssignmentDetect recon
    IncidentMonitoring
    Containment Progress 0%

    Awaiting connection review.

    Incident Pressure Stable
    Sarah Reyes Lead Analyst · Your Supervisor
    ONLINE
    Welcome back. Mission 3 is a threat-hunting exercise. Click any unlocked command to begin.

    You're moving from mapping the network to hunting threats. Something keeps reaching into the network from outside. Review the connections, identify the source, and decide if it's recon.

    By the end of this mission you'll know how to read active connections, look up an unknown IP, recognize a probing pattern in the logs, and tell a real threat from a false lead.

    • Reading active network connections
    • Looking up unknown IP addresses
    • Spotting scanning & probing patterns
    • Separating real threats from false leads
      TERMINAL student@cybercorp
      student@cybercorp:~$
      COMMANDS New commands unlock as you progress
      Current Objective
      Start by reviewing the active network connections.
      💡 HINT Start by reviewing the active network connections.

      Click an unlocked command to run it in the terminal. More commands unlock as you progress.

      Review Connections
      Identify Source
      Search Logs
      Correlate
      MISSION 01 · New Cybersecurity Intern

      Investigate a suspicious workstation

      Mission Control
      01 Workstation
      02 Network
      03 Recon
      BLUE TEAM DEFENDING
      TeamBlue Team
      RoleCybersecurity Intern
      AssignmentInvestigate the workstation
      IncidentMonitoring
      Containment Progress 0%

      Awaiting investigation.

      Incident Pressure Stable
      Containment Actions

      Collect critical evidence to unlock containment responses.

      Sarah Reyes Lead Analyst · Your Supervisor
      ONLINE
      Welcome, intern. Your first task is to inspect this workstation and report anything suspicious.

      You are a new cybersecurity intern. Your manager has asked you to inspect a workstation that may contain a suspicious file. Your job is to use basic Linux commands to investigate safely.

      By the end of this mission, you will understand how basic Linux commands help cybersecurity analysts inspect files and identify suspicious behavior.

      • Reading terminal output
      • Navigating folders
      • Inspecting files
      • Identifying phishing behavior
        TERMINAL student@cybercorp
        student@cybercorp:~$
        COMMANDS New commands unlock as you progress
        Current Objective
        Read the briefing, then click Begin Mission.
        🎯 Your Task

        Open the documents folder and read each file. Most files are harmless — your job is to find the one file that is a real security threat (for example, a message asking someone to share a password or open a suspicious link).

        1. List your files, then open the documents folder.
        2. Read each file and decide if it looks normal or suspicious.
        3. When you are confident, escalate and submit your finding.

        Stuck? Use the Need a hint? button in the Live Status panel.

        💡 HINT Read the briefing, then click Begin Mission.

        Click a button below to run that command in the terminal. More commands will unlock as you investigate.