AOC 2025 Day 15: Web Attack Forensics - Drone Alone | Shield Security
Автор: Shield Security
Загружено: 2025-12-16
Просмотров: 13
🎄 Advent of Cyber 2025 – Web Attack Forensics: Drone Alone
TBFC’s drone scheduler starts receiving suspicious long HTTP requests packed with Base64 payloads. Splunk raises the alarm — “Apache spawned an unusual process.” 🚨
In this walkthrough, we act as a Blue Teamer to triage the incident, pivot between Apache web logs and Sysmon host telemetry, decode obfuscated payloads, and reconstruct the full attack chain.
🧠 You’ll Learn:
📌 Detecting malicious activity in Apache logs
📌 Investigating OS-level actions using Sysmon
📌 Decoding hidden Base64 attacker payloads
📌 Rebuilding the full attack timeline in Splunk
🔗 Room Link: https://tryhackme.com/room/webattackf...
👍 Like | 💬 Comment | 🔁 Share | 🔔 Subscribe for more Advent of Cyber 2025 walkthroughs
Доступные форматы для скачивания:
Скачать видео mp4
-
Информация по загрузке: