Put your cybersecurity investigation skills to the test. Analyze digital evidence to solve the case and identify the culprit behind a data breach.
Security camera footage from the server room, timestamped 2023-03-15 02:34:17
[2023-03-15 02:12:03] Failed login attempt for user schen@fintechcorp.com from IP 192.168.1.45 [2023-03-15 02:12:17] Failed login attempt for user schen@fintechcorp.com from IP 192.168.1.45 [2023-03-15 02:12:42] Failed login attempt for user schen@fintechcorp.com from IP 192.168.1.45 [2023-03-15 02:13:05] Successful login for user schen@fintechcorp.com from IP 192.168.1.45 [2023-03-15 02:15:32] User schen@fintechcorp.com accessed database customers_financial_records [2023-03-15 02:18:47] Large data export initiated by user schen@fintechcorp.com (10.2 GB) [2023-03-15 02:24:15] SSH connection established from IP 192.168.1.45 to external server 45.77.65.211 [2023-03-15 02:26:33] File transfer initiated: customers_financial_records.sql to 45.77.65.211 [2023-03-15 02:30:12] File transfer complete [2023-03-15 02:31:05] User schen@fintechcorp.com executed command: rm /var/log/auth.log [2023-03-15 02:32:44] User schen@fintechcorp.com executed command: history -c [2023-03-15 02:33:16] User schen@fintechcorp.com executed command: rm .bash_history [2023-03-15 02:35:01] User schen@fintechcorp.com logged out [2023-03-15 09:15:22] User schen@fintechcorp.com logged in from IP 192.168.1.156 [2023-03-15 09:17:45] User schen@fintechcorp.com reported lost access badge to security
Dear Sarah Chen,
Our security system has detected unusual login attempts to your account. As a precautionary measure, we have temporarily locked your account.
Please click the link below to verify your identity and reset your password:
https://fintechcorp-secure.com/password-reset?token=a1b2c3d4
If you did not attempt to log in, please contact security immediately.
Thank you,
IT Support Team
FinTechCorp
Look carefully at all evidence files. Pay special attention to:
Your analysis demonstrates strong skills in: