MalOps Labs: Operation Silent Serpent The Lure Scenario An employee reported a strange email attachment. Your task is to analyze the extracted files and uncover the initial attack vector. Questions 1. What is the SHA256 hash of the decoy Sep 20, 2026·4 min read
Following the OLE TrailThe sample for this investigation can be found on Samplepedia In this investigation, I analyze a suspicious Microsoft Office document that contains multiple embedded objects and several layers of OffiAug 25, 2026·8 min read
Malware Traffic Analysis 2026-01-31 - TRAFFIC ANALYSIS EXERCISE: LUMMA IN THE ROOM-AHTask Questions What is the IP address of the infected Windows client? Answer: 10.1.21.58 I usually start by looking at Statistics > Conversations and Statistics > Endpoints tabs in Wireshark to get a Aug 18, 2026·6 min read
C2 Mini Series : Empire to MimikatzPowerShell Empire → Mimikatz This blog post will be part of my mini purple team series of deploying and detecting malicious activities using various C2 infrastructures. PowerShell Empire → Mimikatz: My Lab Notes, Facepalms, and Detections Intro I use...Sep 12, 2025·10 min read