3.8 In what time the attackers first set foot on MINAF's O365 infrastructure?
(Level 3: We're not happy)
|
#7,
2 years, 3 months after release (2024-03-06 17:29:28)
|
100 |
3.7 From which REAL domain was this last attack launched?
(Level 3: We're not happy)
|
#9,
2 years, 3 months after release (2024-03-06 17:25:14)
|
75 |
3.6 Before this successful attack, they tried another one, more sneaky but unsucessful. Could you tell the "code" they used?
(Level 3: We're not happy)
|
#6,
2 years, 3 months after release (2024-03-06 17:19:57)
|
100 |
3.5 The attackers are nice tricksters because they also fooled this user. Which URL did they make him/her click?
(Level 3: We're not happy)
|
#6,
2 years, 3 months after release (2024-03-06 17:17:06)
|
100 |
3.4 The compromised user have connecting from another countries ... Which one is the most frequent?
(Level 3: We're not happy)
|
#10,
2 years, 3 months after release (2024-03-06 17:06:51)
|
50 |
3.3 This kind of attack is EXACTLY called ...
(Level 3: We're not happy)
|
#6,
2 years, 3 months after release (2024-03-06 16:55:48)
|
100 |
3.2 Who fooled this user to install the "thingy" ?
(Level 3: We're not happy)
|
#12,
2 years, 3 months after release (2024-03-06 16:50:08)
|
75 |
3.1 Attackers have tricked someone to consent the installation of something. What is its name?
(Level 3: We're not happy)
|
#10,
2 years, 3 months after release (2024-03-06 16:40:32)
|
125 |
2.9 Which in the "innocent" password of the compromised account ?
(Level 2: Alert! Emergency!)
|
#11,
2 years, 3 months after release (2024-03-06 16:27:26)
|
100 |
2.8 When the attackers did first successfully use the stolen account ?
(Level 2: Alert! Emergency!)
|
#10,
2 years, 3 months after release (2024-03-06 16:22:09)
|
75 |
2.4 The attackes have given themselves permissions over two Sharepoint sites. Who are their owners?
(Level 2: Alert! Emergency!)
|
#12,
2 years, 3 months after release (2024-03-06 16:06:53)
|
75 |
2.3 ... and from which IP address?
(Level 2: Alert! Emergency!)
|
#15,
2 years, 3 months after release (2024-03-06 15:52:55)
|
50 |
2.2. When did the attackers got the World_Happiness_Plan.docx?
(Level 2: Alert! Emergency!)
|
#15,
2 years, 3 months after release (2024-03-06 15:49:23)
|
100 |
2.1 María José Feliz shared this file with an user ... who reshared it with a third user. Who?
(Level 2: Alert! Emergency!)
|
#18,
2 years, 3 months after release (2024-03-06 15:41:02)
|
75 |
1.9 María José Feliz shared this document with other user. Which one?
(Level 1: MINAF-PC7)
|
#19,
2 years, 3 months after release (2024-03-06 13:39:21)
|
75 |
1.8 How many times have been the compressed payload successfully executed?
(Level 1: MINAF-PC7)
|
#5,
2 years, 3 months after release (2024-03-06 13:28:20)
|
100 |
1.7 Which user advises Maria Jose Files to "install" everything?
(Level 1: MINAF-PC7)
|
#20,
2 years, 3 months after release (2024-03-06 13:27:29)
|
125 |
1.6 Where did all these malware was downloaded from?
(Level 1: MINAF-PC7)
|
#21,
2 years, 3 months after release (2024-03-06 12:56:58)
|
75 |
1.5 In that folder there is DEFINITELY another file that Windows Defender strongly dislikes. Which one?
(Level 1: MINAF-PC7)
|
#23,
2 years, 3 months after release (2024-03-06 12:39:59)
|
50 |
1.4 Which payload do these files have?
(Level 1: MINAF-PC7)
|
#17,
2 years, 3 months after release (2024-03-06 12:33:23)
|
75 |
1.3 If you look carefully in the user folder, you'll see some suspicious compressed files. What final extension is the most used?
(Level 1: MINAF-PC7)
|
#25,
2 years, 3 months after release (2024-03-06 12:20:23)
|
50 |
1.2 Which file generated the most recent AV alert?
(Level 1: MINAF-PC7)
|
#20,
2 years, 3 months after release (2024-03-06 12:13:11)
|
50 |
1.1 At which time did María José Feliz create the document "World_Happiness_Plan.docx" on her computer?
(Level 1: MINAF-PC7)
|
#19,
2 years, 3 months after release (2024-03-06 12:06:18)
|
50 |