forensics challenge
PowerShell Breadcrumbs — Case AA4A
Northstar Medical Group is investigating its operations API after a controlled training incident exposed a realistic weakness in a synthetic environment. Step in as the responder and follow the evidence.
Incident briefing
Scenario
You have been brought in to help Northstar Medical Group investigate its operations API after a controlled training incident exposed a realistic weakness in a synthetic environment. The environment is intentionally vulnerable and isolated for this exercise.
Objective
Analyze the supplied evidence with Kali forensic tools, reconstruct the verification value, and recover the flag.
Skills
What you will practice
- PowerShell
- Windows logs
- deobfuscation
Tooling
Useful Kali tools
- PowerShell
- strings
Ready to practice?
Launch an isolated target
Sign in to Locinode to receive a disposable lab environment and Kali workstation for this mission. Public pages never expose flags or intended solutions.
Enter range