Albern

7th place

836 points


Solves

Challenge Category Value Time
Ticketing Incident Response 50
Eradication Incident Response 15
Containment Incident Response 15
not a real malware hash Disk Forensics 30
not a real malware file Disk Forensics 30
Attachment Hash Disk Forensics 25
mailer Disk Forensics 20
Email File Location Disk Forensics 25
stupid sysadmin Disk Forensics 20
Disk Info - 2 Disk Forensics 25
Disk Info - 1 Disk Forensics 25
Body Data Network Forensics 30
URL Path Network Forensics 25
Dst port Network Forensics 15
C2 IP Network Forensics 15
C2 Domain Network Forensics 20
PPID Memory Forensics 25
Process ID Memory Forensics 30
Memory File Info Memory Forensics 30
Procedure Example Threat Intelligence 25
Archived File Log Analysis 20
Persistance Name Log Analysis 20
Hidden file Log Analysis 20
Extracted File Log Analysis 20
Sysmon 11 Log Analysis 20
Backup Log Log Analysis 15
User Name Log Analysis 20
is this bruteforce2 ? Log Analysis 10
is this bruteforce? Log Analysis 15
Wazuh Rule ID Log Analysis 15
Linux Server Hostname Log Analysis 5
Malware Possible Name Threat Intelligence 15
MITRE Technique ID Threat Intelligence 15
Phishing Technique Threat Intelligence 10
Phishing Domain Threat Intelligence 10
Legitimate Domain Threat Intelligence 10
Malware Hash Threat Intelligence 15
Nama Nama Tools 2 Sanity Check 5
Alert 5 Alert Triaging 10
Alert 4 Alert Triaging 10
Alert 3 Alert Triaging 10
Alert 2 Alert Triaging 10
Alert 1 Alert Triaging 10
Nama Nama Tools 1 Sanity Check 5
IP Address Sanity Check 5
Total Hosts Sanity Check 5
Wazuh Index Sanity Check 5
Incident Location Sanity Check 5
Company Name Sanity Check 5
Welcome Sanity Check 1