Media Summary: In this video, Research Team Lead Carlos Perez demonstrates how to configure We are all familiar with Microsoft Windows style logging in the form of Event Logs (EV). How many of you have had to decipher an ... Link to the box folder where you can find a pdf with links to most of my videos: ...

Sysmon Use Case 6 Detecting Other Libraries - Detailed Analysis & Overview

In this video, Research Team Lead Carlos Perez demonstrates how to configure We are all familiar with Microsoft Windows style logging in the form of Event Logs (EV). How many of you have had to decipher an ... Link to the box folder where you can find a pdf with links to most of my videos: ... Prevention eventually fails. Bypassing tools such as Windows Defender Antivirus may be challenging, but it can be done. Hey guys, in this video I'll run through how SOC analysts correctly read logs on a daily basis. We'll go through how to read logs, ... This discussion with Amanda Berlin, Lead Instant

Photo Gallery

Sysmon Use Case 6 - Detecting Other Libraries
Sysmon Use Case 9 - More Privilege Escalation Detection
Sysmon Use Case 4   Bogus Windows Processes
Sysmon Use Case 5  Nasty Injection & Encoded Attacks
Using Sysmon to analyze a malware sample
Learning Sysmon - Detecting abuse via Process Access (Video 10)
Using Sysmon to Improve your Incident Response and Threat Hunting Capabilities
Detecting Kerberos golden ticket Attacks with Sysmon
Detecting Command and Control Frameworks via Sysmon and Windows Event Logging
Sysmon: PowerShell Use Case 3 Obfuscation
how to CORRECTLY read logs as a Cybersecurity SOC Analyst
Building Visibility   Sysmon, Telemetry, and the First Step Into Endpoint Hunting
Sponsored
View Detailed Profile
Sysmon Use Case 6 - Detecting Other Libraries

Sysmon Use Case 6 - Detecting Other Libraries

Link to the

Sysmon Use Case 9 - More Privilege Escalation Detection

Sysmon Use Case 9 - More Privilege Escalation Detection

Link to the

Sysmon Use Case 4   Bogus Windows Processes

Sysmon Use Case 4 Bogus Windows Processes

Link to the

Sysmon Use Case 5  Nasty Injection & Encoded Attacks

Sysmon Use Case 5 Nasty Injection & Encoded Attacks

Link to the

Using Sysmon to analyze a malware sample

Using Sysmon to analyze a malware sample

MCSI Certified Reverse Engineer https://www.mosse-institute.com/certifications/mre-certified-reverse-engineer.html ...

Sponsored
Learning Sysmon - Detecting abuse via Process Access (Video 10)

Learning Sysmon - Detecting abuse via Process Access (Video 10)

In this video, Research Team Lead Carlos Perez demonstrates how to configure

Using Sysmon to Improve your Incident Response and Threat Hunting Capabilities

Using Sysmon to Improve your Incident Response and Threat Hunting Capabilities

We are all familiar with Microsoft Windows style logging in the form of Event Logs (EV). How many of you have had to decipher an ...

Detecting Kerberos golden ticket Attacks with Sysmon

Detecting Kerberos golden ticket Attacks with Sysmon

Link to the box folder where you can find a pdf with links to most of my videos: ...

Detecting Command and Control Frameworks via Sysmon and Windows Event Logging

Detecting Command and Control Frameworks via Sysmon and Windows Event Logging

Prevention eventually fails. Bypassing tools such as Windows Defender Antivirus may be challenging, but it can be done.

Sysmon: PowerShell Use Case 3 Obfuscation

Sysmon: PowerShell Use Case 3 Obfuscation

Link to the

how to CORRECTLY read logs as a Cybersecurity SOC Analyst

how to CORRECTLY read logs as a Cybersecurity SOC Analyst

Hey guys, in this video I'll run through how SOC analysts correctly read logs on a daily basis. We'll go through how to read logs, ...

Building Visibility   Sysmon, Telemetry, and the First Step Into Endpoint Hunting

Building Visibility Sysmon, Telemetry, and the First Step Into Endpoint Hunting

Building Visibility —

Understanding Sysmon & Threat Hunting with A Cybersecurity Specialist & Incident Detection Engineer

Understanding Sysmon & Threat Hunting with A Cybersecurity Specialist & Incident Detection Engineer

This discussion with Amanda Berlin, Lead Instant