Ulysses is a blue team lab that falls under the Endpoint Forensics category and will cover the following subjects: Volatility, 010 Editor, Autopsy, FTK Imager, VsCode, Initial Access, Execution, Persistence, Privilege Escalation, Command and Control, Exfiltration, Impact.
Learning Objectives
Analyze Linux system artifacts, including memory dumps and logs, with Volatility and FTK Imager to reconstruct an attack and identify IOCs.