Windows Lateral Movement Detection

Splunk Community

Windows Lateral Movement Detection

Windows Lateral Movement Detection
The technology addon 'TA-latmov' was designed based off SANS' 2018 Hunt Evil Poster. This poster focuses on lateral movement from forensic evidence found on the source/destination endpoint after the action has occurred. Based on this, I created a series of Windows-based inputs to capture the state for threat hunting and preservation.
0 topics and 0 replies mentioned Windows Lateral Movement Detection in
Latest Topics
No posts to display.
Latest Replies
No posts to display.
Top Topics
No posts to display.
My Topics
No posts to display.