GhostDetect is a blue team lab that falls under the Malware Analysis category and will cover the following subjects: CyberChef, Wireshark, Strings, VS Code, LECmd, ProcMon.
Learning Objectives
Investigate a multi-stage phishing attack by analyzing LNK files, de-obfuscating scripts, identifying C2, decrypting payloads, and attributing the TTPs to the UAC-0057 APT group.
Categories: Malware Analysis.
Tools: CyberChef, Wireshark, Strings, VS Code, LECmd, ProcMon.
Difficulty: hard.
This website uses cookies to ensure you get the best experience on our
website.
Learn more