December 10, 2020

New Lab Template: Spark Studio

We’re excited to announce the launch of a new lab template - Spark Studio - a collaboration with Bionic Cyber.

The Spark Studio lab is designed to offer both Red and Blue Teams a realistic environment to attack and defend. For Red Teams we leveraged our experience and feedback from our previous lab designs, Eagle Bank and Shirts Corp, to design a challenging and realistic target. For Blue Teams, we partnered with Bionic Cyber to include a comprehensive stack of defensive technologies for endpoint and network visibility, threat hunting, detection engineering, response automation and information sharing.

Lab Highlights

  • 31 Systems in total
  • Active Directory - 2 Forests, 3 Domains
  • Windows Server 2016
  • Windows Server 2019
  • Ubuntu 18.04
  • CentOS 7
  • Debian 9
  • Kali Linux

                   

spark-full.png
                                                                                                                       

         

Spark Studio is a small mobile app development shop based out of San Francisco, California. They’re newest app, Spark Chat, has just been released! Spark Chat lets you chat with people nearby over Bluetooth, but it has some security issues and so does their company…

Red Team Features and Concepts

The Spark Studio lab takes an “outside in” red team perspective, with initial access to only a handful of “public” servers located in a DMZ. Attackers must compromise these servers, escalate, pivot into the main corporate network, and repeat! The end goal for attackers is to compromise an application signing server and be able to serve a signed, malicious android application on the “public” website.

  • Kali attacker system
  • Android APK reverse engineering
  • C# Assembly reverse engineering
  • Basic web vulnerabilities
  • Active Directory misconfigurations
  • CI/CD pipeline abuse
  • Credential Spraying/Bruteforce attacks
  • Cleartext credentials
  • VPN and Jump Box pivoting

Blue Team Features and Concepts

For this lab, we collaborated with Bionic Cyber to build out a realistic and comprehensive stack of blue team technologies for endpoint and network visibility, threat hunting and detection engineering, response automation and information sharing.

Spark Studio is available for use now for enterprise clients! If you’re interested in a taking a look at Spark Studio contact us for a fully-featured trial account.

UP NEXT

How Accenture Keeps Cyber Security Teams Trained on the Latest Threats

read NOW