CallMeOnTheChain - EtherRAT

CallMeOnTheChain - EtherRAT is a blue team lab that falls under the Network Forensics category and will cover the following subjects: uniq, tshark, sort, Wireshark, Etherscan.io, Initial Access, Execution, Persistence, Privilege Escalation, Command and Control.

Learning Objectives

Decrypt traffic, decompile smart contracts, and uncover how attackers turned the blockchain into a C2 channel.

Categories: Network Forensics.

MITRE ATT&CK Tactics: Initial Access, Execution, Persistence, Privilege Escalation, Command and Control.

Tools: uniq, tshark, sort, Wireshark, Etherscan.io.

Difficulty: medium.