RCEMiner is a blue team lab that falls under the Network Forensics category and will cover the following subjects: Wireshark, Brim, Execution, Discovery, Lateral Movement, Command and Control, Impact.
Correlate network traffic, RCE exploits, and C2 communications using Wireshark to reconstruct a multi-stage web server compromise, cryptomining, and lateral movement.
Categories: Network Forensics.
MITRE ATT&CK Tactics: Execution, Discovery, Lateral Movement, Command and Control, Impact.
Tools: Wireshark, Brim.
Difficulty: medium.