Simulated a brute-force attack against a Windows machine and detected it using Elastic SIEM. Investigated alerts, analyzed authentication logs, and documented the attack workflow.