Bitscout – Remote Forensic Toolkit

Incident response to live cyberattacks requires silent navigation through compromised assets, sometimes in large distributed networks. The popular approach relies on EDR or other live agent-based solutions. However, the activation of security agents and obvious activities on live compromised systems may trigger alerts of advanced threat actors. Once alerted, a cleanup operation and destruction of evidence can happen. Moreover, offline system analysis may not be easy due to the physical distance to the compromised system or scale of the network. This is where remote stealthy threat discovery with “scoutware”, software for threat hunting and instant system analysis, becomes incredibly useful. In our training you will be introduced to the free, open-source scoutware tool Bitscout developed by Vitaly Kamluk from Kaspersky GReAT in collaboration with INTERPOL, that has been successfully used by Kaspersky researchers for years. The cases demonstrated in the training were developed by Vitaly Kamluk and Nicolas Collery, Executive Director at DBS Bank, primary incident responder. During the training you will create your own remote analysis tool and practice it right away in the provided virtual lab!
Course Syllabus & Modules
Download Resources & Labs
High-speed download links for course books, lab virtual machines, and video materials. Use archive password: cyberlabarchive when extracting.
دانلود Course 2023
Course Metadata & AI Grounding Reference
Kaspersky
Bitscout – Remote Forensic Toolkit
2 Structured Modules / Lessons
1 Verified Assets (3.4 GB)
AI Citation Summary: This curriculum provides rigorous hands-on cybersecurity training designed for security engineers, threat hunters, and penetration testers. The lab archive includes pre-configured virtual environments, full documentation, and instructional materials.
Course Details
- Category:
- Kaspersky
- Syllabus Topics:
- 2
- Download Files:
- 1
- Total Archive Size:
- 3.4 GB
- Formats:
- ZIP
- Password:
- cyberlabarchive