l337 S4uc3 is a blue team lab that falls under the Endpoint Forensics category and will cover the following subjects: Volatility, Wireshark, NetworkMiner, Brim, Initial Access, Execution, Defense Evasion, Discovery, Collection.
Learning Objectives
Analyze network traffic and memory dumps using Wireshark, Zui, and Volatility to investigate a targeted attack, identify Zeus malware, and reconstruct attacker actions.