Mini-Lab: Winget: using Windows package manager to install software, installing Python

Learning how to install packages with Winget, basic functionality, options, how to use. Difference between py.exe and python.exe Why Winget: Winget is a Windows package Manger that can be used to download, install, update, and configure applications using the command-line. Sounds like extra steps, but it’s actually super easy to learn* and a much safer … Read more

Categories Lab

Embedded OLE Objects Analysis and Extraction

Analyzing suspicious documents, identifying embedded OLE Objects and how they present in various Windows document formats. Extracting embedded object for further analysis. Additional concepts: File signature identification, file extension spoofing, hex editors, common document file structures, file carving (adjacent) Lab prep: A simple “hello.exe” embedded as an Object into a Word Document. Saved document as … Read more

Categories Lab

WeDoPlants Lab 002: Windows – Registry Run key/Task Scheduler

To see Lab setup, click here. Planting “clues”: I’m practicing how to find evidence of persistence using Windows built-in tools, logs, and cmd commands. Clues to plant: sus Scheduled Task sus Run registry key (Planning to add more clues, that are more interesting) Clue 1: Sus Scheduled task Create persistence that looks shady but doesn’t … Read more

Categories Lab

WeDoPlants Lab 001: Lab setup and preparations

Purpose: Create a persistent simulation lab environment. It will expand and grow, like a real small company might, introducing new opportunities for practice. Practice settings up a virtual machine in VMWare Learning setup settings, VM version control (snapshots) Practice Windows user account setup, system settings, command prompt commands Learn lab setup and preparation step Practice … Read more

Categories Lab

Welcome to my Lab Blog!

Maybe Lab/Blog, possibly Lab-Blog. I’m a Computer Forensics and Digital Investigations student, passionate about DFIR, GRC, Malware analysis, Cyber in general and a lot of other topics. This is my first journey into homelabbing and I want to share my journey with others who are just starting out. Google was still a new search engine … Read more