Skip to content

Security: ogtamimi/SOC-Analyst-WriteUp-LetsDefend.io

Security

SECURITY.md

Security Policy

Supported Versions

This repository is a documentation-based project containing SOC analysis write-ups.

Since this project does not contain production code, all versions are considered supported for documentation improvements and corrections.


Reporting a Vulnerability

If you discover a security issue related to this repository (for example: exposed credentials, sensitive information, or accidental disclosure of private data), please follow these steps:

  1. Do NOT open a public issue if the report involves sensitive information.
  2. Contact the repository owner directly via GitHub profile.
  3. Provide clear details about:
    • The file name
    • The location of the issue
    • Description of the risk
    • Suggested remediation (if possible)

We will review and address the issue as soon as possible.


Responsible Disclosure

We are committed to responsible disclosure. If a valid issue is identified:

  • The affected content will be corrected or removed.
  • Sensitive data will be sanitized immediately.
  • A commit will document the fix (without exposing sensitive details).

Security Best Practices for Contributors

When contributing:

  • Do NOT include real credentials, API keys, or tokens.
  • Do NOT upload sensitive logs containing private data.
  • Sanitize IP addresses, domains, emails, or usernames if necessary.
  • Avoid sharing proprietary or copyrighted platform content.
  • Ensure screenshots do not reveal personal information.

Disclaimer

This repository contains educational write-ups related to SOC analysis training.
All investigations and examples are based on simulated environments (LetsDefend platform).

This repository is intended for learning and portfolio purposes only.

There aren't any published security advisories