XLMRat

XLMRat is a blue team lab that falls under the Network Forensics category and will cover the following subjects: CyberChef, Wireshark, VirusTotal, Python3, PowerShell, Execution, Defense Evasion.

Learning Objectives

Analyze network traffic to identify malware delivery, deobfuscate scripts, and map attacker techniques using MITRE ATT&CK, focusing on stealthy execution and reflective code loading.

Categories: Network Forensics.

MITRE ATT&CK Tactics: Execution, Defense Evasion.

Tools: CyberChef, Wireshark, VirusTotal, Python3, PowerShell.

Difficulty: easy.