Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Flag ’Detect malicious file on system' in Blue Certificate training #2872

Closed
sato-cyber opened this issue Feb 10, 2024 · 3 comments
Closed

Comments

@sato-cyber
Copy link

I enjoy solving Blue Certificate flags in CALDERA Training. I got the Enable Manual Operation flag in manual, but I'm having trouble resolving the following flag: Detect malicious file on system. Looking at blue_2a.py in the manual folder, it appears that the corresponding ability does not seem to be included. I would appreciate it if you could give me some hints on how to get the flag. Thank you.

Copy link

Looks like your first issue -- we aim to respond to issues as quickly as possible. In the meantime, check out our documentation here: http://caldera.readthedocs.io/

@sato-cyber
Copy link
Author

Regarding the following three Flags in Blue certificate training, the following three Abilities are considered to be applicable.
I continuously linked the Abilities in the operation titled as Blue Manul, and successfully executed them. However, it is unable to acquire any flags. There may be a problem. I'm having trouble progressing to the subsequent Flags.

Flags:Detect malicious file on system,Search for malicious file on system,Delete malicious file on system
Abilities:Acquire suspicious file,Hunt for known suspicious files,Delete known suspicious files

Copy link

This issue is stale because it has been open 30 days with no activity. Remove stale label or comment or this will be closed in 5 days

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

No branches or pull requests

1 participant