DFSP # 320 - Lateral MM and Event Logs

Digital Forensic Survival Podcast - En podkast av Digital Forensic Survival Podcast - Tirsdager

Kategorier:

This week I’m going to cover detecting lateral movement using Windows event logs. This is not the Windows fast triage method I covered in previous episodes. This is more in-depth and focuses on specific attack tools and strategies seen in actual cases. Going into this level of detail is beyond the scope of a typical episode, however there is some research that has very granular details on the tools and methods you can use. I’ll have that coming up right after this.

Visit the podcast's native language site