PsExec Hunt

PsExec Hunt is a blue team lab that falls under the Network Forensics category and will cover the following subjects: Wireshark, Execution, Defense Evasion, Discovery, Lateral Movement.

Learning Objectives

Analyze SMB traffic in a PCAP file using Wireshark to identify PsExec lateral movement, compromised systems, user credentials, and administrative shares.

Categories: Network Forensics.

MITRE ATT&CK Tactics: Execution, Defense Evasion, Discovery, Lateral Movement.

Tools: Wireshark.

Difficulty: easy.