Voldemort - APT41 is a blue team lab that falls under the Threat Hunting category and will cover the following subjects: Web Cache View, Strings, Splunk, Initial Access, Execution, Stealth, Discovery, Exfiltration.
Synthesize disparate forensic artifacts across email, network, and host logs to reconstruct a multi-stage phishing, malware, and C2 attack, attributing it to a known campaign.
Categories: Threat Hunting.
MITRE ATT&CK Tactics: Initial Access, Execution, Stealth, Discovery, Exfiltration.
Tools: Web Cache View, Strings, Splunk.
Difficulty: hard.