Decoding njRAT traffic with NetworkMiner

#njRAT #NetworkMiner #REMnux

I investigate network traffic from a Triage sandbox execution of njRAT in this video. The analysis is performed using NetworkMiner in Linux (REMnux to be specific). About njRAT / Bladabindi njRAT is a Remote Access Trojan (RAT) that can be used to remotely control a hacked computer. It has been arou[...]

Read the full writeup in the blog post Decoding njRAT traffic with NetworkMiner