🛡️CTF/Blue Team Labs
Network Analysis - Web Shell
Network Analysis - Web Shell
2023.08.10[Blue Team Labs] Network Analysis - Web Shell # 시나리오 The SOC received an alert in their SIEM for ‘Local to Local Port Scanning’ where an internal private IP began scanning another internal system. Can you investigate and determine if this activity is malicious or not? You have been provided a PCAP, investigate using any tools you wish. 1. What is the IP responsible for conducting the port scan a..