Skip to content

Commit 45635f7

Browse files
authored
Create lab5-network-forensics.md
1 parent cf60223 commit 45635f7

File tree

1 file changed

+15
-0
lines changed

1 file changed

+15
-0
lines changed

labs/lab5-network-forensics.md

Lines changed: 15 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,15 @@
1+
# Lab 5 – Network Forensics
2+
3+
## Objective
4+
Investigate network captures to identify malicious communication.
5+
6+
## Tasks
7+
1. Analyze PCAP data with Wireshark.
8+
2. Identify C2 traffic, exfiltration, or scans.
9+
3. Extract files from PCAP.
10+
4. Correlate network activity with endpoint artifacts.
11+
12+
## Expected Output
13+
- PCAP findings
14+
- Extracted artifacts
15+
- Attack-flow diagram

0 commit comments

Comments
 (0)