Challenges

Clear
Forensics Easy

PCAP Deep Dive

A packet capture was taken during a suspected data exfiltration event. The attacker used DNS tunneling to smuggle data out.

100 pts
Forensics Medium

Memory Dump Analysis

A Windows memory dump was captured from a compromised workstation. Use Volatility to identify the malicious process.

200 pts