Discord Forensics

Our SIEM alerted that AV blocked malware from running on an employee's machine. For further investigation, the incident response team quickly acquired an image of that machine. To find out how this malware got on the machine, their task is to find the entry point of the attack and trace the attacker.


File Location: C:\Users\LetsDefend\Desktop\ChallengeFile\Discord.7z



Writeups:

  • LetsDefend — Discord Forensics Challenge Walkthrough