dPhish Final Phase CTF Writeup
A practical walkthrough of dPhish Final Phase CTF, tracing a phishing campaign from a compromised internal mailbox through attacker infrastructure, malicious PowerShell attachment analysis, and the final flag.
Field notes, threat intelligence, reverse engineering dossiers, and forensic analysis writeups.
A practical walkthrough of dPhish Final Phase CTF, tracing a phishing campaign from a compromised internal mailbox through attacker infrastructure, malicious PowerShell attachment analysis, and the final flag.
Adversary telemetry shows accelerated usage of fake software installers and demo lures to drop browser stealers.
# Detection hook for suspicious headless browser invocations
Get-WinEvent -FilterHashtable @{LogName='Security';ID=4688} A practical walkthrough of dPhish Final Phase CTF, tracing a phishing campaign from a compromised internal mailbox through attacker infrastructure, malicious PowerShell attachment analysis, and the final flag.
In-depth forensic review of an exposed threat staging server running AdaptixC2, Cobalt Strike 4.9.1, and weaponized Rogue MySQL arbitrary file read attacks.
Technical teardown of a sophisticated C-based malware development pipeline featuring GitHub Contents API and Google Sheets C2 channels, BYOVD EDR blinding, and process hollowing.
Passive acquisition review + offline static analysis of an exposed QuickDAV malware repository and Remcos RAT delivery infrastructure.
A real story about mobile forensics, FRP bypass, chipset research, and passive OSINT, all in service of getting a phone back to its owner.
OSINT investigation mapping a fake crypto exchange fraud network from one Facebook lure to DNS, backend, certificate, and WebSocket infrastructure.
Two real OSINT cases showing how small exposed data points can turn into full identity pivots.
Digital forensics challenge analysis focused on host artifacts, evidence handling, and investigation flow.
OSINT challenge walkthroughs covering pivots, source validation, and clean investigative methodology.
Technical breakdown of an infostealer delivery chain using a fake game demo and post-execution artifact review.
Structured starter roadmap for learning OSINT challenge workflows across core disciplines and tool choices.
Lab-focused walkthrough for building a VoIP environment and inspecting traffic with Wireshark.
Forensics challenge writeups covering Windows, Android, and artifact-driven investigation techniques.
No writeups match your current search query or filter criteria. Try clearing the search or picking another tag.