🕵️‍♂️ Threat Hunting Práctico: Windows & Linux
- Date
- 2026-04-30
- Host
- Personal
About this event
If you want to move beyond theory and actually practice how threat hunting works across real operating systems, this meetup is built for you. Threat Hunting Práctico: Windows & Linux focuses on hands-on thinking, practical detection mindset, and the kind of cross-platform security conversations that help you sharpen your instincts fast. This is also a community space: a chance to meet people who care about defensive security, compare approaches, and talk through what actually matters when you are trying to spot suspicious behavior in Windows and Linux environments. Whether you work in security every day or you are actively building toward that path, the value here is in learning by doing and discussing what you find. What Is This? This is an in-person community meetup centered on practical threat hunting techniques for both Windows and Linux. Rather than staying at a high level, the event is designed around applied security thinking: how to investigate signals, what to look for on each platform, and how hunters approach systems with different behaviors, logging patterns, and common attack surfaces. The mix of topics matters. Windows and Linux often demand different mental models, different telemetry, and different investigation habits. Bringing both into one session makes this especially useful for people who want broader operational awareness instead of staying limited to a single environment. You should expect a meetup format that feels collaborative, grounded, and technical without becoming inaccessible. The emphasis is on shared learning, practical examples, and discussion that helps attendees connect concepts to real defensive work. Because this is tagged as a community, networking, meetup, and social event, the experience is not just about absorbing information. It is also about meeting peers, exchanging ideas, and building relationships with others interested in security operations, blue teaming, and threat detection. What to Expect The evening will likely center on practical threat hunting discussion and working through examples relevant to Windows and Linux systems. That can include how to think about suspicious process activity, persistence mechanisms, system artifacts, log review, or the differences in how attackers leave traces across operating systems. You can expect a structure that supports both learning and interaction, such as: A focused introduction to the hunting theme for the session Practical walkthroughs or examples tied to Windows and Linux environments Discussion of how to investigate system behavior and identify meaningful signals Time to ask questions, compare approaches, and learn from the room Informal networking before, during, or after the main session Because the event is described as practical, come ready to engage actively. Even if the format is not a formal workshop, the strongest value will come from paying attention to investigation logic, asking why a signal matters, and thinking through what you would do next as an analyst or defender. Another important part of the experience is perspective-sharing. Different attendees may come from SOC roles, IT backgrounds, DFIR, system administration, or self-study. That variety often leads to better conversations about how hunting looks in real environments rather than in idealized examples. Why Attend Threat hunting is one of those skills that gets stronger through exposure to real patterns, repeated reasoning, and discussion with other practitioners. This meetup gives you a chance to build that muscle in a setting that is focused enough to teach something useful, but open enough to let you ask questions and connect ideas across platforms. If you mostly know one operating system, this is a good opportunity to widen your view. Windows and Linux each reveal different aspects of defender tradecraft, and understanding both can make you more effective when investigating alerts, tuning detections, or simply trying to understand how attackers behave in mixed environments. Attending can help you: Strengthen your practical understanding of threat hunting concepts Improve your ability to think across both Windows and Linux systems Learn how others approach investigations and prioritize evidence Ask specific questions in a community setting without the pressure of a formal classroom Build connections with people who share your interest in security and defensive operations There is also real value in the in-person format. Security knowledge often clicks faster when you can talk through an idea face-to-face, sketch out a workflow, or hear how someone else would investigate the same behavior differently. Those conversations often become just as useful as the main content itself. Practical Details This event is in person, which makes it a strong fit if you prefer live discussion, direct networking, and the energy of learning in the same room as other practitioners. You will be able to engage more naturally, ask follow-up questions in real time, and have the kinds of side conversations that usually do not happen in online sessions. The meetup takes place on Wednesday, April 29 at 6:00 PM CST. Since it is scheduled for the evening, it should work well for people attending after work or class, especially if you are looking for a focused but approachable way to spend time with the local security community. A few ways to get the most out of it: Arrive ready to participate, not just listen Bring your questions about Windows, Linux, hunting workflows, or defensive tooling Be prepared to network with other attendees before or after the session If you are newer to the topic, do not worry about knowing everything; practical meetups are often the best place to build confidence If you care about detection, investigation, and learning how defenders think across operating systems, this meetup offers a useful combination of technical focus and community access. It is a solid way to spend an evening if you want sharper hunting instincts and better security conversations.
Who should attend
This will feel especially worthwhile if you want practical security discussion, cross-platform perspective, and the chance to learn alongside other people who care about threat detection. - You work in a **SOC, blue team, DFIR, or security operations** role and want to sharpen how you hunt across both Windows and Linux. - You are a **system administrator, IT professional, or infrastructure engineer** who wants a better understanding of what suspicious activity looks like on the systems you manage. - You are learning cybersecurity and want exposure to **real defensive thinking**, not just abstract theory or exam-style content. - You already know one platform well and want to become more effective in **mixed environments** where both Windows and Linux matter. - You enjoy meetups where you can **ask questions, compare workflows, and talk shop** with people who have different technical backgrounds. - You are looking for an **in-person community event** that combines practical learning with networking, instead of a purely social meetup or a purely passive lecture. If you are curious, engaged, and ready to think through how threat hunting works in practice, you are likely a strong fit for this room.