XZBackDoor

XZBackDoor is a blue team lab that falls under the Endpoint Forensics category and will cover the following subjects: Linux Command Line Tools, GitHub, MD5 Center, Execution, Persistence, Privilege Escalation, Defense Evasion, Command and Control.

Learning Objectives

Investigate a Linux server compromise by analyzing the XZ backdoor, web shell, log data, and OSINT to uncover attacker TTPs and extract critical IOCs.

Categories: Endpoint Forensics.

MITRE ATT&CK Tactics: Execution, Persistence, Privilege Escalation, Defense Evasion, Command and Control.

Tools: Linux Command Line Tools, GitHub, MD5 Center.

Difficulty: hard.