AWSRaid is a blue team lab that falls under the Cloud Forensics category and will cover the following subjects: Splunk, Persistence, Privilege Escalation, Credential Access.
Investigate AWS CloudTrail logs using Splunk to identify unauthorized access, analyze configuration changes, and detect persistence mechanisms.
Categories: Cloud Forensics.
MITRE ATT&CK Tactics: Persistence, Privilege Escalation, Credential Access.
Tools: Splunk.
Difficulty: easy.