CodeFreeze 2 is a blue team lab that falls under the Endpoint Forensics category and will cover the following subjects: Python, CyberChef, DB Browser for SQLite, Registry Explorer/RECmd, MFTECmd, Timeline Explorer, Initial Access, Execution, Persistence, Privilege Escalation, Stealth, Discovery, Collection, Command and Control, Exfiltration.
Learning Objectives
Reconstruct a multi-stage attack timeline by analyzing forensic artifacts from browser, VSCode, WSL, registry, and application logs.