- Lab
-
Libraries: If you want this lab, consider one of these libraries.
- Security
.NET Malware: Analyzing Redline Stealer
After several months of solid experience in the Globomantics security operations center, your manager is entrusting you with increasingly complex investigations. Your current assignment involves a suspected information stealer, with EDR pointing to RedLine Stealer. This journey will be a crash course in commodity malware, guiding you through the process of unraveling .NET droppers. You'll gain hands-on experience with dnSpy to uncover the final malware stage, positively identify the malware family, and detail its capabilities to properly scope the impact on your organization.
Lab Info
Table of Contents
-
Challenge
Unraveling Common .NET Obfuscation
In the first objective, you’ll sharpen your reversing skills by analyzing obfuscated .NET code. These common patterns rely on dynamic assembly loading, code flattening, and symbol mangling to make analysis more difficult. Using dnSpy, you’ll leverage static and dynamic techniques to slice through these layers and uncover the primary payload—RedLine Stealer.
-
Challenge
Identifying Redline Stealer Capabilities
Getting through layers of obfuscation is just the first step. Once the final payload is discovered, its capabilities need to be assessed. Using the final payload, you will map out how it utilizes its configuration data to receive commands and examine the modular nature of its theft capabilities.
-
Challenge
The Last Objective
Welcome to the final objective! This is your last chance to experiment in the environment. Clicking End Lab will end this little world that flittered into existence just for you.
About the author
Real skill practice before real-world application
Hands-on Labs are real environments created by industry experts to help you learn. These environments help you gain knowledge and experience, practice without compromising your system, test without risk, destroy without fear, and let you learn from your mistakes. Hands-on Labs: practice your skills before delivering in the real world.
Learn by doing
Engage hands-on with the tools and technologies you’re learning. You pick the skill, we provide the credentials and environment.
Follow your guide
All labs have detailed instructions and objectives, guiding you through the learning process and ensuring you understand every step.
Turn time into mastery
On average, you retain 75% more of your learning if you take time to practice. Hands-on labs set you up for success to make those skills stick.