Forum Widgets
Recent Discussions
Windows Basics: Demonstrate your knowledge Q11.
Hello, I'm stuck on this question. Though cmd returns the change as being successful, the lab isn't marking the task as complete. I've tried using both Task Scheduler and cmd to change the task action. I've also tried to create the script itself in case it didn't exist and that's what's causing the issue. It says the parameters have been changed, but I'd really appreciate any pointers. Thank you1like1CommentModern Encryption: Demonstrate Your Skills
Hello, I am a little stuck on Q3 for this lab and would really appreciate any help I can get. So I have followed the steps as required by encrypting the file - plaintext_1.txt and set the password as per steps on the actual file itself - plaintext_1.txt. However after setting the password I am not getting token_1.txt appearing in the Lab-Files folder. What am I doing incorrectly?Solved0likes13CommentsPython Scripting for Malware Analysis: Ep.4 – Static Analysis of Cryptographic Algorithms matplotlib problem
I've got the Private key by running the initial script sample. I'm attempting to do the plotting of entropy, but immediately get an error for the "import matplotlib.pyplot as plt" line of "ModuleNotFoundError: No module name 'matplotlib'" Is there something to do to get that to load? pip commands don't work in that environment. I've identified where the encrypted data starts based on the code, the rest of the python looks like it builds off the matplotlib output.Solved0likes2CommentsWizard Spider DFIR: Ep.9 – Sigma
The question I'm stuck on is : Modify the rule file "file_event_win_macro_file.yml" to also include ".docm" file types. Convert this rule using Sigmac and use the output within Elastic. How many potentially malicious Microsoft Word files are discovered? I have done everything modified the rule and I have converted this rule using sigmac and have this output file.name.keyword:(*.dotm OR *.xlsm OR *.xltm OR *.potm OR *.pptm OR *.pptx OR *.docm) but I just cannot find elastic anywhere to use the output within elastic ? its not in the notes as a link, its not an app. ive even tried putting in the port number and ip address to get it up and that not working has anyone else completed this and no how to open elastic I feel like this should be the easy bit. Please help even Chatgpt has given up.0likes2CommentsCan I format the text in an interlude with HTML?
I see that there is a way to add an HTML snippet in the text box for an interlude. Is this going to let me format the screen when displayed? I have tried some pretty simple HTML code, but it seems to only add a box in the interlude with the HTML code in it. Should the web browser execute the HTML code on my screen?CSP Hash Incorrect Despite Correct Script and Hash (CSP Lab Issue?)
Hello all! I'm working on Introduction to Content Security Policy (CSP) Lab: Content Security Policy: Hashes exercise that requires generating the correct hash for an inline script like: <script>document.body.style.backgroundColor = "#ADDADE";</script> I’ve used both CyberChef and the SHA-256 JavaScript snippet to generate hashes like: sha256-+BWzTX+GJrse8ifajvHg6QFPdmE+JjXYmrYBn+kLITo= sha256-Msn/9dD1zBN7LGZyQyglKL9JMVyCsVqvZ7MAkmm/BpU= I've accounted for trailing newlines and whitespaces (CRLF, LF), used View Source (not dev tools), and verified that I'm hashing the exact script content. However, the lab continues to mark the answer as “incorrect.” Is this likely a glitch in the lab setup, or is there a common mistake I might be overlooking? Would appreciate any help or confirmation from someone who’s completed this lab or run into a similar problem1like5CommentsActive Directory Basics: Demonstrate Your Skills
Hi there, I'm a little stuck on Q12 and would greatly appreciate some help. I have gone into each of the users profile below and tried to identify through - Properties>Account>Log on to - but to no avail as to who the user is on COMP-SIREN. Also as a process of elimination I have tried all the users that begin with L but still to no avail?Solved0likes3Comments
Get support from the community
If your question has been answered, help others by clicking: