BlackSuit Ransomware is a blue team lab that falls under the Malware Analysis category and will cover the following subjects: Ghidra, IDA, x64dbg, Python3, CFF Explorer, FLOSS/Strings, Execution, Stealth, Defense Impairment, Discovery, Impact.
Reconstruct BlackSuit ransomware's attack lifecycle by analyzing PE artifacts, encrypted payloads, API calls, and network communication using Ghidra, x64dbg, and CFF Explorer.
Categories: Malware Analysis.
MITRE ATT&CK Tactics: Execution, Stealth, Defense Impairment, Discovery, Impact.
Tools: Ghidra, IDA, x64dbg, Python3, CFF Explorer, FLOSS/Strings.
Difficulty: hard.