DumpMe

DumpMe is a blue team lab that falls under the Endpoint Forensics category and will cover the following subjects: Volatility 2, sha1sum, Execution, Defense Evasion, Command and Control.

Learning Objectives

Analyze memory dumps using Volatility 2 to identify Meterpreter malware and extract Indicators of Compromise.

Categories: Endpoint Forensics.

MITRE ATT&CK Tactics: Execution, Defense Evasion, Command and Control.

Tools: Volatility 2, sha1sum.

Difficulty: medium.