Learn to defend.
Think like an attacker.

Purple team training by design. Understand how attackers operate, then build the defenses to stop them. Hands-on home lab exercises with real tools and techniques.

THE PURPLE TEAM APPROACH

Attack + Defend = Complete Security

The best defenders understand offense. Our courses teach you to simulate attacks in your home lab, then build and test the defenses that stop them.

Red Team

Penetration testing techniques
Exploit development basics
Post-exploitation & pivoting
Adversary emulation

Purple Team

Home lab environments
Attack-then-detect exercises
Validate your detections
End-to-end scenarios

Blue Team

SIEM & log analysis
Incident response workflows
Detection engineering
Threat hunting techniques

Build your home lab and practice

#Simulate attacks | #Collect logs | #Write detections | #Validate alerts

Reproduce MITRE ATT&CK techniques in your own isolated lab, then turn them into detections using open tooling like Sysmon, and Elastic. You learn the why, the how, and the evidence.
Hands-on purple team training

Prove real skills

~ what_you_get/

Everything you need to level up

No fluff. Practical skills you can apply in your home lab today and your security role tomorrow.

$ start-learning

Self-paced · Lifetime access · Home lab included

malvik@homelab: ~/course

malvik@homelab:~$ ./what-you-get.sh --list

[✓] home_lab_guides

# Build your own attack and defense range — VM setup, network config, tool install

[✓] hd_video_lessons

# Crystal-clear video, adjustable playback speed, on any device, anytime

[✓] hands_on_exercises

# Run real attacks. Build real defenses. Industry-standard tools you'll use on the job

[✓] flexible_access

# Self-paced with lifetime access. Learn on your schedule, revisit anytime

malvik@homelab:~$

Our courses

FAQ

Do I need prior experience?

No professional red team or SOC experience needed. You should be comfortable in a terminal, know your way around Windows and Linux, and understand IP addresses, ports and DNS. The course starts by building the lab, then ramps into attack and detection work with the prerequisites stated per module. You do not need to be an expert to start.

What do I need for the home lab?

One computer, x86-64, with virtualization enabled (VT-x / AMD-V). 16 GB RAM minimum, 32 GB recommended, and 150 GB free disk. You'll run Kali Linux, Windows Server with Active Directory, DVWA and the Elastic Stack with Sysmon — every tool is free, including VMware Workstation Pro under its personal licence. Lab scope only: never run these techniques against systems you do not own.

I have an Apple Silicon Mac. Can I take this course?

Not on the Mac itself. Windows Server does not run on ARM, so the lab needs an x86-64 host — a Windows or Linux PC, or a spare machine. If that's your only computer, wait until you have access to one rather than buying and getting stuck at Module 3.

What do I get, and how long do I keep it?

Ten modules, around sixty lessons, and a capstone where you attack a web application and write the detection that catches it. Lifetime access to the course and every future update — not six or twelve months like most training. Support runs through the Malvik Discord community. Enrolment opens to the waitlist first.

Founding cohort opens soon

Purple Team Detection Engineering is $349 USD with lifetime access — the course and every future update.
The founding cohort pays less ($50). Do not wait until the price goes up.
Thank you!
Created with
Malvik Security