Category: Threat Detection

Windows Event Log Triaging
June 14, 2020

Windows Event Log Triaging

Security & SOC analysts are frequently tasked with the triaging of event log data. This article serves as a reference point for those in need of investigating failed logon attempts, a.k.a. Windows Event Log ID 4625. Given the numerous opportunities for logging on to computers these days, determining the cause can be challenging to both IT generalists and security teams.

Read More
Threat Detection: IOC vs. IOA
January 15, 2020

Threat Detection: IOC vs. IOA

Today we are starting an educational series on threat detection, intelligence and monitoring for Managed Service Providers (MSPs) and Security Operation Centers (SOCs)

Read More