ClickFix - VodkaStealer is a blue team lab that falls under the Threat Hunting category and will cover the following subjects: Splunk, Execution, Persistence, Privilege Escalation, Stealth, Credential Access, Discovery, Lateral Movement, Collection, Exfiltration, Impact.
Analyze Splunk event logs to reconstruct a multi-stage attack chain, detailing initial access, privilege escalation, lateral movement, and data exfiltration.
Categories: Threat Hunting.
MITRE ATT&CK Tactics: Execution, Persistence, Privilege Escalation, Stealth, Credential Access, Discovery, Lateral Movement, Collection, Exfiltration, Impact.
Tools: Splunk.
Difficulty: medium.