Loading…
Show the hidden incidents in this room (spoiler)
Why SOC Hub
Real-world incidents
Every room has hand-planted attacks — brute force, lateral movement, BEC, MFA fatigue, token theft. Find them like a real analyst.
Zero install
DuckDB-WASM runs the full SQL engine in your browser. No accounts to create, no software to install, no Azure subscription required.
Practice → production
The query you write here works against your real Microsoft Sentinel or Splunk workspace. Same syntax, same UI, real data.
(Production mode rolling out — see Pricing)
Built for L1 → L3
23 Basic queries to start. 21 Advanced incl. CTEs, window functions, anomaly z-scores. 7 Expert kill-chain hunts. Grow in one tool.
Pricing
Indian-friendly. Build skills before you pay.
Free
- All 3 starter rooms
- 77 categorized sample queries
- Browser-only — no signup needed
- Save up to 5 queries (with login)
Student
- Everything in Free
- Unlimited saved queries
- Auto-grading challenges with score history
- 50% off with .edu / Techclick alumni email
- New rooms every month
Coming soon
Pro
- Everything in Student
- Production mode — connect your own Sentinel / Splunk
- Run alerts on a schedule (CF Cron)
- Webhook actions on hits
- Sigma rule import / export
Coming soon
Team
- Everything in Pro
- Class rooms & leaderboards
- Custom datasets (upload your own logs)
- Admin console + bulk enrollment
- Priority support
Email support@techclick.in