KC7 provides a free, browser‑based platform that turns authentic MITRE ATT&CK‑derived log datasets into interactive cyber‑detective cases. Users practice incident‑response workflows with KQL queries, guided checkpoints, and automatic progress tracking, enabling hands‑on skill development without any software installation. The system also supports private events for educators and corporate teams.
Funding
Funding not disclosed
Founders
Product
Problem
Many aspiring cybersecurity professionals lack access to realistic, hands‑on investigative training that mirrors the data and workflows used in real security operations centers. Traditional classroom labs often rely on synthetic or simplified data, making it difficult to develop practical log‑analysis and incident‑response skills. This gap limits the pipeline of skilled analysts, especially for learners without prior technical background or institutional resources.
Solution
KC7 delivers a free, browser‑based cyber‑detective game that transforms authentic, MITRE ATT&CK‑derived log datasets into story‑driven investigation scenarios. Players follow a guided investigative workflow, receiving checkpoints and hints that emulate the step‑by‑step process used by professional analysts. The platform generates realistic network, email, and endpoint logs on demand, allowing users to practice querying, evidence correlation, and threat‑storytelling without installing software. Progress is automatically tracked and visualized, enabling self‑paced learning and measurable skill development. Educators and corporate trainers can launch private events or competitions using the same engine, extending the experience to classrooms and team‑building sessions. Because KC7 is hosted in the cloud, anyone with an internet connection can start a case within minutes, lowering barriers to entry for diverse learners.
Target Audience
Primary users are cybersecurity beginners, students, and career‑switchers seeking practical incident‑response experience, as well as educators and corporate security teams that need a plug‑and‑play hands‑on training solution.
Features
- Web‑native interface that runs in any modern browser; no installation or local environment setup required.
- Proprietary datasets generated from MITRE ATT&CK techniques, providing authentic security logs (network, email, endpoint) for each scenario.
- Story‑driven cases with characters, stakes, and narrative twists that keep learners engaged while teaching real investigative steps.
- Guided checkpoints and built‑in hints that scaffold the analyst workflow from initial alert to final threat narrative.
- Integrated Kusto Query Language (KQL) support for log querying, mirroring tools used in enterprise SOCs.
- Automatic progress analytics and dashboards that record completed tasks, scores, and skill milestones.
- Event hosting toolkit for educators and security teams to create private competitions, track participant performance, and run sessions in under three hours.
- Open‑source‑compatible data export APIs for downstream reporting or integration with learning management systems.