Threat Hunting

From Glitchdata
Jump to navigation Jump to search


Tools

  • Powershell: SANS SEC505.1 PowerShell Automation and Security
  • Windows WMI
  • NMAP
  • EDR tools
  • Loggly
  • Canary Tokens