Classroom
Posts
Categories
Tags
Archives
Search
About
Home
Tags
Sysmon
SOC Level 2
Conti: ProxyShell to Ransomware in Splunk
SOC Level 2
Monday Monitor: Reading Sysmon in Wazuh
SOC Level 2
Building Wazuh Rules: Decoders and CDB Alerts
SOC Level 2
Servidae: Tracing a Compromised Workstation in ELK
SOC Level 2
Traffic Analysis Pitfalls: When the Wire Stops Talking
SOC Level 1
Investigating with Splunk Walkthrough
SOC Level 2
Preparation: The First Phase of Incident Response
Splunk
New Hire Old Artifacts: Hunting an Intrusion in Splunk
splunk
Splunk Sysmon Configuration