T1598.002 - Dragonfly is a blue team lab that falls under the Endpoint Forensics category and will cover the following subjects: Oledump, Outlookspy, CyberChef, Python, Reconnaissance, Stealth.
Learning Objectives
Analyze a spearphishing email to identify social engineering techniques and extract indicators of compromise from its headers and malicious attachment.
Categories: Endpoint Forensics.
MITRE ATT&CK Tactics: Reconnaissance, Stealth.
Tools: Oledump, Outlookspy, CyberChef, Python.
Difficulty: easy.
This website uses cookies to ensure you get the best experience on our
website.
Learn more