Загрузка...

Domain Controller Forensics & Investigation - Cyber Defenders: Pwned DC Series - Intro Video

This is a video providing an introduction to the amazing lab provided by CyberDefenders. This is a Domain Controller investigation challenge with 32 questions that force you to think like Sherlock Holmes the digital version of course.

#blueteam #activedirectory #domaincontroller #forensics #incidentresponse #ransomware #compromised #breach #evidence #detective

Reference:
Official Challenge - https://cyberdefenders.org/blueteam-ctf-challenges/89
Autopsy User Doc - https://sleuthkit.org/autopsy/docs/user-docs/3.1/
EC01 file - https://www.reviversoft.com/en/file-extensions/e01
SANS memory forensic cheat sheet - https://www.sans.org/posters/memory-forensics-cheat-sheet/

Tools:
volatility2 - https://github.com/volatilityfoundation/volatility
volatility3 - https://github.com/volatilityfoundation/volatility3
Autopsy - https://www.autopsy.com/download/
Autopsy plugins - https://github.com/sleuthkit/autopsy_addon_modules/tree/master/IngestModules
Arsenal Image Mounter - https://arsenalrecon.com/downloads/
IDA - https://hex-rays.com/ida-free/
Capa-Explorer - https://github.com/mandiant/capa
TurnedOnTimesView - https://www.nirsoft.net/utils/computer_turned_on_times.html
FullEventLogView - https://www.nirsoft.net/utils/full_event_log_view.html
MFTECmd - https://github.com/EricZimmerman/MFTECmd
USB Forensic Tracker - http://orionforensics.com/forensics-tools/usb-forensic-tracker/
WinDbg - https://docs.microsoft.com/en-us/windows-hardware/drivers/debugger/debugger-download-tools
Outlook Forensics Wizard - https://forensiksoft.com/outlook-forensics.html
FakeNet - https://sourceforge.net/projects/fakenet/#:~:text=FakeNet%20is%20Windows%20network%20simulation,be%20observed%20by%20an%20analyst.
oletools
wireshark - https://www.wireshark.org/download.html
scdbg - http://sandsprite.com/blogs/index.php?uid=7&pid=152
Resource Hacker - http://angusj.com/resourcehacker/
Ghidra - https://ghidra-sre.org/

Music:- ASHUTOSH - Chile
Watch:- https://youtu.be/fnOW-AdFY6I
https://www.ashutoshmusic.com/music

Видео Domain Controller Forensics & Investigation - Cyber Defenders: Pwned DC Series - Intro Video канала Hoplite Security
Яндекс.Метрика
Все заметки Новая заметка Страницу в заметки
Страницу в закладки Мои закладки
На информационно-развлекательном портале SALDA.WS применяются cookie-файлы. Нажимая кнопку Принять, вы подтверждаете свое согласие на их использование.
О CookiesНапомнить позжеПринять