Silent Breach

Silent Breach is a blue team lab that falls under the Endpoint Forensics category and will cover the following subjects: CyberChef, Strings, SQLite Viewer, FTK Imager, Text Editor, Execution.

Learning Objectives

Analyze a forensic image to extract communication artifacts, identify malware behavior, and decrypt encrypted files using FTK Imager, string analysis, and PowerShell scripting.

Categories: Endpoint Forensics.

MITRE ATT&CK Tactics: Execution.

Tools: FTK Imager, Text Editor, SQLite Viewer, Strings, CyberChef.

Difficulty: medium.