Takedown
2025-03-07
We’ve identified an unusual pattern in our network activity, indicating a possible security breach. Our team suspects an unauthorized intrusion into our systems, potentially compromising sensitive data. Your task is to investigate this incident.
54 words
|
1 minute
TFC CTF 2024
2024-08-04
The challenge provided a log file containing some verbose events that I’ve noticed when dealing with the first forensics chall, they were related to remote command executions in PowerShell, identified by Event ID 4104.
The first notable event, dated 07-12-2024, included a reversed Base64 string.
221 words
|
1 minute