본문 바로가기 메뉴 바로가기

N0cT1s41

프로필사진
  • 글쓰기
  • 관리
  • 태그
  • 방명록
  • RSS

N0cT1s41

검색하기 폼
  • IT (104)
    • Programing (3)
      • PYTHON (3)
    • Digital Forensics (47)
      • 디지털 포렌식 개론 (8)
      • DISK Forensic (13)
      • File System (6)
      • Artifact (8)
      • Memory Forensic (4)
      • File Structure (5)
      • Tools (2)
      • Anti-Forensic (1)
    • Incident Response (3)
      • MITRE ATT&CK (3)
    • CTF (51)
      • MEMLABS (7)
      • CyberDefenders (19)
      • root me (8)
      • FIESTA (2)
      • Net-Force (1)
      • Dreamhack (5)
      • CTF-D (4)
      • 기타 CTF (5)
  • 방명록

네트워크 포렌식 (7)
OpenWire Blue Team Lab

해당 문제는 CyberDefenders의 OpenWire문제에 대한 풀이입니다.1. Challenge descriptionDuring your shift as a tier-2 SOC analyst, you receive an escalation from a tier-1 analyst regarding a public-facing server. This server has been flagged for making outbound connections to multiple suspicious IPs. In response, you initiate the standard incident response protocol, which includes isolating the server from the netw..

CTF/CyberDefenders 2024. 8. 1. 22:14
BlueSky Ransomware Blue Team Lab

해당 문제는 CyberDefenders의 BlueSky Ransomware문제에 대한 풀이입니다.1. Challenge descriptionAs a cybersecurity analyst on SecureTech's Incident Response Team, you're tackling an urgent case involving a high-profile corporation that suspects a sophisticated cyber attack on its network. The corporation, which manages critical data across various industries, has experienced a ransomware attack, leading to the en..

CTF/CyberDefenders 2024. 7. 30. 18:10
PsExec Hunt Blue Team Lab

해당 문제는 CyberDefenders의 PsExec Hunt문제에 대한 풀이입니다.1. Challenge descriptionOur Intrusion Detection System (IDS) has raised an alert, indicating suspicious lateral movement activity involving the use of PsExec. To effectively respond to this incident, your role as a SOC Analyst is to analyze the captured network traffic stored in a PCAP file.Q1.In order to effectively trace the attacker's activities ..

CTF/CyberDefenders 2024. 7. 28. 23:31
WebStrike Blue Team Lab

해당 문제는 CyberDefenders의 WebStrike문제에 대한 풀이입니다.1. Challenge descriptionAn anomaly was discovered within our company's intranet as our Development team found an unusual file on one of our web servers. Suspecting potential malicious activity, the network team has prepared a pcap file with critical network traffic for analysis for the security team, and you have been tasked with analyzing the pcap.Q1..

CTF/CyberDefenders 2024. 7. 28. 15:55
PoisonedCredentials Blue Team Lab

해당 문제는 CyberDefenders의 PoisonedCredentials문제에 대한 풀이입니다.1. Challenge descriptionYour organization's security team has detected a surge in suspicious network activity. There are concerns that LLMNR (Link-Local Multicast Name Resolution) and NBT - NS (NetBIOS Name Service) poisoning attacks may be occurring within your network. These attacks are known for exploiting these protocols to intercept net..

CTF/CyberDefenders 2024. 7. 25. 21:15
Tomcat Takeover Blue Team Lab

해당 문제는 CyberDefenders의  Tomcat Takeover 문제에 대한 풀이입니다.1. Challenge descriptionOur SOC team has detected suspicious activity on one of the web servers within the company's intranet. In order to gain a deeper understanding of the situation, the team has captured network traffic for analysis. This pcap file potentially contains a series of malicious activities that have resulted in the compromise of..

CTF/CyberDefenders 2024. 7. 8. 21:11
이전 1 2 다음
이전 다음

Blog is powered by Tistory / Designed by Tistory

티스토리툴바