Step into a live APT intrusion, modeled on real-world incidents. Alerts are firing across your environment: zero-day exploitation, lateral movement, and stealthy data exfiltration. In this lab you drive the incident response in Melian as the AI correlates the scattered alerts into one attack, digs into the raw logs behind them, builds the timeline, and scopes the blast radius, compressing hours of manual work into minutes.
Then you close the loop and take the attacker's TTPs from the incident and use Melian to author new detection rules in your SIEM's native query language, so the same intrusion is caught automatically next time. Sit down, run the response, and leave with detections you built.