Red Stealer is a blue team lab that falls under the Threat Intel category and will cover the following subjects: Whois, VirusTotal, MalwareBazaar, ThreatFox, ANY.RUN, Execution, Persistence, Privilege Escalation, Stealth, Defense Impairment, Discovery, Collection, Impact.
Analyze a suspicious executable using VirusTotal and MalwareBazaar to extract IOCs, identify C2 infrastructure, MITRE ATT&CK techniques, and privilege escalation mechanisms.
Categories: Threat Intel.
MITRE ATT&CK Tactics: Execution, Persistence, Privilege Escalation, Stealth, Defense Impairment, Discovery, Collection, Impact.
Tools: Whois, VirusTotal, MalwareBazaar, ThreatFox, ANY.RUN.
Difficulty: easy.