Patrick

Patrick is a blue team lab that falls under the Endpoint Forensics category and will cover the following subjects: CyberChef, DB Browser for SQLite, DCode, Unfurl, iLEAPP, ios_apt, Credential Access.

Learning Objectives

Investigate iOS device artifacts using iLEAPP and SQLite Browser to identify anomalous user behavior and potential illicit activity.

Categories: Endpoint Forensics.

MITRE ATT&CK Tactics: Credential Access.

Tools: CyberChef, iLEAPP, DCode, DB Browser for SQLite, Unfurl, ios_apt.

Difficulty: hard.