7MS #495: Desperately Seeking a Super SIEM for SMBs - Part 5

7MS #495: Desperately Seeking a Super SIEM for SMBs - Part 5

Today we continue our SIEM/SOC evaluation series with a closer look at one particular managed solution and how it fared (very well) against a very hostile environment: the Light Pentest LITE pentesting course! Spoiler alert: this solution was able to detect:

  • RDP from public IPs
  • Password spraying
  • Kerberoasting
  • Mimikatz
  • Recon net commands
  • Hash dumping
  • Hits on a "honey domain admin" account
  • Users with non-expiring passwords
  • Hits on the SSH/FTP/HTTP honeypot

Populärt inom Politik & nyheter

aftonbladet-krim
motiv
p3-krim
rss-krimstad
fordomspodden
svd-dokumentara-berattelser-2
svenska-fall
flashback-forever
rss-viva-fotboll
olyckan-inifran
rss-sanning-konsekvens
aftonbladet-daily
rss-vad-fan-hande
svd-nyhetsartiklar
rss-frandfors-horna
grans
dagens-eko
rss-flodet
blenda-2
rss-krimreportrarna