Antisyphon Pay What You Can Training
Access and status
Cost
Partly free
Part of it is free and part is not. The entry says which part; read that before you plan around it.
Status
Current
Current as at the verification date below. Standards and tools both move — confirm at source before you rely on it.
What it is
Antisyphon runs selected courses on a Pay What You Can model, stating that it wants to help people who cannot afford conventional training prices. Courses confirmed on the page at the time of checking are SOC Core Skills in the Age of AI with John Strand (live and on-demand) and the Professionally Evil CISSP Mentorship Program (live, multiple instructors).
Who it is for, and when
SOC Core Skills is the relevant one for this audience: live instruction on triage, log analysis and initial incident handling, at a price you choose. Benefits are tiered by what you pay, and the page states that paying under USD 295 does not include Cyber Range access.
What it does not cover
I could not confirm from the site whether a payment of zero is accepted, so treat this as low-cost rather than proven free until you check at registration. The Pay What You Can slate rotates and is small — most of Antisyphon's catalogue, including its forensics-adjacent courses, is normally priced, and there is no deep disk or mobile forensics in the PWYC offerings.
Go to the source
Open at antisyphontraining.com (opens in a new tab)https://www.antisyphontraining.com/pay-what-you-can/
Details
- Type
- Free training
- Written for
- New to the fieldWorking examinerNew to the field, Working examiner
- Topics
- free-training, training, incident-response, log-analysis, triage
- Checked at source
Related entries
TryHackMe Free Tier
Partly freeA browser-based hands-on security learning platform. The free tier gives limited access to learning paths, access to rooms marked free, and one hour of AttackBox use per day. Paid plans are Premium at about EUR 10.50 per month billed annually and MAX at about EUR 17.99 per month billed annually, which unlock full path access, unlimited AttackBox and certificates.
The incident response process as a discipline: preparation, detection and initial response, live collection from Windows and Unix, forensic duplication, network evidence, evidence handling, then analysis of hosts, traffic, attacker tools and routers, and report writing.
Blue Team Labs Online
Partly freeA gamified platform, run by Centri, of "security investigations and challenges covering; Incident Response, Digital Forensics, Security Operations, Reverse Engineering, and Threat Hunting". Challenges are downloadable artefacts — memory dumps, phishing emails, packet captures, logs — while investigations run in hosted lab instances.
Investigation in cloud environments using native tooling and logs alongside conventional forensic technique: AWS, Azure and Google Cloud, then Microsoft 365, Google Workspace and containerised environments including Kubernetes, with attention to which logs must be enabled before an incident to be available after one.
CyberDefenders
Partly freeA blue-team lab platform hosting scenario-based investigations grouped as endpoint forensics, network forensics, malware analysis, cloud forensics, threat hunting, detection engineering and threat intelligence. Challenges are question-and-answer over supplied evidence, with a scoreboard.