Главная
Study mode:
on
1
Introduction
2
Todays topic
3
Why am I here
4
Disclaimer
5
Attack
6
Support
7
Data Source Reference
8
History of Statements
9
New Features
10
Directory Structure
11
Name Annotation
12
Data Voyager
13
Investigative Workflow
14
Challenges
15
App Structure
16
Reporting
17
Filtering
18
Network Connections
19
Roadmap
Description:
Explore advanced endpoint detection techniques using Sysmon in this 26-minute conference talk from Derbycon 2019. Gain insights into cost-effective methods for enhancing your cybersecurity capabilities as Olaf Hartong delves into topics such as attack support, data source references, and the evolution of Sysmon features. Learn about directory structures, name annotation, and data voyager tools to improve your investigative workflow. Discover how to overcome challenges in app structure, reporting, and filtering, while also understanding network connections. Conclude with a roadmap for future developments in endpoint detection and response.

Endpoint Detection Super Powers on the Cheap with Sysmon

Add to list