Add answer key for KC7 Cyber Defender workshop#651
Open
beagandica wants to merge 1 commit into
Open
Conversation
Complete teacher reference for the Kusto/KQL cybersecurity workshop: - Activity 2: 3 Whodunit attribution answers (verified from HTML source) - Activity 3: 9 KQL query solutions (take, count, where, distinct, let) - Activity 4: 7 investigation methodology guides for immune[.]tech phishing - Quick reference table for 10 KQL operators - Investigation methodology summary (6-step framework) - Bonus activities correctly deferred to Scoreboard/independent work Note: Exact numeric results depend on the live SecurityLogs database. Video walkthroughs referenced on Activities 3.5 and 4.5. Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com>
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Summary
Complete teacher reference for the KC7 Kusto/KQL cybersecurity workshop, covering all answerable activities with KQL query solutions.
Changes
New file: \content/english/Kusto-KC7/answer-key.md\
Activity 2 (Whodunit): 3 attribution quiz answers
Activity 3 (KQL 101): 9 KQL query solutions
Activity 4 (Catch the Hacker): 7 investigation methodology guides
Additional resources
Languages affected
Note
Exact numeric results depend on the live SecurityLogs database and may vary between sessions. Video walkthroughs on Activities 3.5 and 4.5 complement this written reference.
Testing