yuanxa

17th place

836 points


Solves

Challenge Category Value Time
Attachment Hash Disk Forensics 25
not a real malware hash Disk Forensics 30
Ticketing Incident Response 50
not a real malware file Disk Forensics 30
Procedure Example Threat Intelligence 25
mailer Disk Forensics 20
stupid sysadmin Disk Forensics 20
Email File Location Disk Forensics 25
Malware Possible Name Threat Intelligence 15
Archived File Log Analysis 20
Backup Log Log Analysis 15
Persistance Name Log Analysis 20
Hidden file Log Analysis 20
is this bruteforce2 ? Log Analysis 10
is this bruteforce? Log Analysis 15
Wazuh Rule ID Log Analysis 15
Disk Info - 2 Disk Forensics 25
Disk Info - 1 Disk Forensics 25
PPID Memory Forensics 25
Process ID Memory Forensics 30
Extracted File Log Analysis 20
Eradication Incident Response 15
Sysmon 11 Log Analysis 20
User Name Log Analysis 20
Memory File Info Memory Forensics 30
URL Path Network Forensics 25
C2 IP Network Forensics 15
Dst port Network Forensics 15
Body Data Network Forensics 30
C2 Domain Network Forensics 20
Linux Server Hostname Log Analysis 5
Containment Incident Response 15
Malware Hash Threat Intelligence 15
MITRE Technique ID Threat Intelligence 15
Phishing Technique Threat Intelligence 10
Phishing Domain Threat Intelligence 10
Legitimate Domain Threat Intelligence 10
Alert 5 Alert Triaging 10
Alert 4 Alert Triaging 10
Alert 3 Alert Triaging 10
Alert 2 Alert Triaging 10
Alert 1 Alert Triaging 10
Total Hosts Sanity Check 5
IP Address Sanity Check 5
Wazuh Index Sanity Check 5
Nama Nama Tools 2 Sanity Check 5
Nama Nama Tools 1 Sanity Check 5
Incident Location Sanity Check 5
Company Name Sanity Check 5
Welcome Sanity Check 1