EcomBreach

EcomBreach is a blue team lab that falls under the Endpoint Forensics category and will cover the following subjects: Linux Command Line Tools, Initial Access, Persistence, Privilege Escalation, Defense Evasion, Collection.

Learning Objectives

Develop skills in forensic analysis, attack chain reconstruction, and threat detection following a web server compromise using Linux forensic techniques.

Categories: Endpoint Forensics.

MITRE ATT&CK Tactics: Initial Access, Persistence, Privilege Escalation, Defense Evasion, Collection.

Tools: Linux Command Line Tools.

Difficulty: medium.