DFSP # 278 - Process Triage & CMD

DFSP # 278 - Process Triage & CMD

This week is a continuation of the Windows fast triage miniseries. While other aspects of the triage miniseries had fairly contained artifacts to examine, new process triage presents a large and complex landscape to the analyst. I have already broken down a number of effective analysis methods to make this more manageable. This week I focus on key applications to look for during a review. These applications tend to be associated more with malicious activity, at least according to threat intelligence research, so being aware of them and recognizing the potential is important. I also spend some time talking about the nuances of CMD.

Tämä jakso on lisätty Podme-palveluun avoimen RSS-syötteen kautta eikä se ole Podmen omaa tuotantoa. Siksi jakso saattaa sisältää mainontaa.

Jaksot(498)

Suosittua kategoriassa Tiede

rss-mita-tulisi-tietaa
rss-poliisin-mieli
tiedekulma-podcast
utelias-mieli
rss-duodecim-lehti
filocast-filosofian-perusteet
rss-totuuden-liepeilla
rss-lihavuudesta-podcast
hippokrateen-vastaanotolla
rss-bios-podcast
rss-ja-ihminen-loi-alyn-aalto-yliopiston-tekoalypodcast
rss-ruoka-murroksessa
rss-tiedetta-vai-tarinaa
rss-vaasan-yliopiston-podcastit