Facebook Instagram Linkedin
  • Home
  • Active Directory Attack
  • Network Attack
  • SIEM
  • TOOLS
  • IOC
  • Mitre Att&ck
  • E-Mail Attack
  • Editors Pick
Search
Security Investigation Be the first to investigate
  • Home
  • Active Directory Attack
    • Threat Hunting Using Windows Security Log

      CVE-2023-21554 – Hunt For MSMQ QueueJumper In The Environment

      OS Credential Dumping- LSASS Memory vs Windows Logs

      Credential Dumping using Windows Network Providers – How to Respond

      The Flow of Event Telemetry Blocking – Detection & Response

  • Network Attack
    • DNS sinkholes to Prevent Malware? How did it work?

      Threat Hunting using DNS logs – Soc Incident Response Procedure

      What is Port Forwarding and the Security Risks?

      Threat Hunting using Firewall Logs – Soc Incident Response Procedure

      Threat Hunting with Zeek – Log Types and Use cases

  • SIEM
    • The Most Important Data Exfiltration Techniques for a Soc Analyst to…

      Soc Interview Questions and Answers – CYBER SECURITY ANALYST

      Anatomy Of An Advanced Persistent Threat Group

      The Benefits of Cybersecurity Training Online for Remote Employees

      Cybersecurity Playbook for SOC

  • TOOLS
    • Pestudio: Initial Malware Assessment Made Simple

      How Attackers Manipulate LLMs in ML – Attack Vectors

      How to Remove Database Malware from Your Website

      PECmd – Windows Prefetch Analysis For Incident Responders

      How Brazilian students use AI

  • IOC
    • Phishing Scam Alert: Fraudulent Emails Requesting to Clear Email Storage Space…

      Vidar Infostealer Malware Returns with new TTPS – Detection & Response

      New WhiskerSpy Backdoor via Watering Hole Attack -Detection & Response

      RedLine Stealer returns with New TTPS – Detection & Response

      Understanding Microsoft Defender Threat Intelligence (Defender TI)

  • Mitre Att&ck
    • Threat Hunting Playbooks For MITRE TACTICS

      Masquerade Attack Part 2 – Suspicious Services and File Names

      Masquerade Attack – Everything You Need To Know in 2022

      MITRE D3FEND Knowledge Guides to Design Better Cyber Defenses

      Mapping MITRE ATT&CK with Window Event Log IDs

  • E-Mail Attack
    • How DKIM SPF & DMARC Work to Prevent Email Spoofing and…

      How Email Encryption Protects Your Privacy

      How To Check Malicious Phishing Links

      Emotet Malware with Microsoft OneNote- How to Block emails based on…

      How DMARC is used to reduce spoofed emails ?

  • Editors Pick
Home Tags Windows event id threat hunting

Tag: windows event id threat hunting

Hunting for Suspicious Windows Services – Mind Map
Active Directory Attack

Hunting for Suspicious Windows Services – Mind Map

Anusthika Jeyashankar -
November 8, 2021
0
Most Common Windows Event IDs to Hunt – Mind Map
Active Directory Attack

Most Common Windows Event IDs to Hunt – Mind Map

BalaGanesh -
November 3, 2021
0
Windows Management Instrumentation Attacks – Detection & Response
Active Directory Attack

Windows Management Instrumentation Attacks – Detection & Response

Anusthika Jeyashankar -
November 1, 2021
0
Directory Services Restore Mode Password Reset – Event IDs to Monitor
Active Directory Attack

Directory Services Restore Mode Password Reset – Event IDs to Monitor

Anusthika Jeyashankar -
October 25, 2021
0
Threat Hunting Using Powershell and Fileless Malware Attacks
Active Directory Attack

Threat Hunting Using Powershell and Fileless Malware Attacks

BalaGanesh -
October 12, 2021
0
Logon Tracer – Investigate & Visualize Malicious Windows Logon
TOOLS

Logon Tracer – Investigate & Visualize Malicious Windows Logon

Harisuthan -
October 6, 2021
0
Threat Hunting Using Windows Scheduled task
Active Directory Attack

Threat Hunting Using Windows Scheduled task

Anusthika Jeyashankar -
October 4, 2021
0
Threat Hunting Using Windows EventID 4648 – Logon/Logoff
Active Directory Attack

Threat Hunting Using Windows EventID 4648 – Logon/Logoff

BalaGanesh -
September 28, 2021
0
Threat Hunting with Windows Event IDs 4625 & 4624
Active Directory Attack

Threat Hunting with Windows Event IDs 4625 & 4624

BalaGanesh -
September 24, 2021
0
  • Latest Cyber Security News
  • AbuseIPDB
  • Web Archive
  • Sucuri Web Malware
  • About Us
  • Contact Us
  • Privacy Policy
© Newspaper WordPress Theme by TagDiv