incident-response-trainer
Mock scenarios · Rule-based grading
CatalogOverviewSnapshot
← Back to catalog
Cyber × Network FusioneasyRogue Wireless APHigh asset
Scenario

Evil twin SSID 'ACME-Corp' near the cafe — auto-connect captured employee credentials

A easy Cyber × Network Fusion scenario on Rogue Wireless AP.

Practice this scenario

Start a graded attempt against this scenario. Your response is scored by the same deterministic rubric used across the catalog. Email and evidence content stay hidden until you start.

Launches this exact scenario. One of 3 templates in this Track + Difficulty pool.

catalog id · fusion-rogue-wireless-ap

Training alignment

What this scenario practices, mapped to recognized frameworks.

Educational mapping only. Not a compliance attestation.

What this trains
  • Rogue-AP discovery discipline
  • Wireless containment workflow
MITRE ATT&CKmitre-attack
  • Adversary-in-the-Middle · Credential AccessT1557 · TA0006
    MappedHigh confidence

    Trains triage of rogue-AP redirection.

MITRE D3FENDmitre-d3fend
  • Network Traffic AnalysisD3-NTA
    MappedHigh confidence

    Trains wireless-traffic visibility reasoning.

  • Real-time Service DetectionD3-RTSD
    MappedMedium confidence

    Trains the rogue-service detection posture.

NIST CSF 2.0nist-csf-2
  • Asset Management · IdentifyID.AM · ID
    MappedHigh confidence

    Trains asset-inventory reasoning for wireless infrastructure.

  • Continuous Monitoring · DetectDE.CM · DE
    MappedHigh confidence

    Trains the monitoring discipline on the wireless plane.

NIST SP 800-61r3nist-sp-800-61r3
  • IR lifecycle phaseDetection & Analysis
    MappedHigh confidence

    Trains structured triage of rogue-AP indicators.

  • IR lifecycle phaseContainment, Eradication & Recovery
    MappedHigh confidence

    Trains physical and policy containment workflow.

CISA Cybersecurity Performance Goalscisa-cpg
  • Asset Inventory1.A
    MappedHigh confidence

    Trains the asset-inventory baseline.

  • Document Network Topology2.M
    MappedHigh confidence

    Trains the topology baseline.

CIS Controls v8cis-controls
  • Inventory and Control of Enterprise AssetsControl 1
    MappedHigh confidence

    Trains the asset-inventory control.

  • Network Infrastructure ManagementControl 12
    MappedHigh confidence

    Trains the network-management control.