Archive
You Give HR A Bad PDF
Established a home lab environment utilizing VMware to simulate an attack scenario between Windows and Kali Linux VMs. This setup shows scripts usage within Metasploit and real-time event monitoring through Sysmon and Splunk.
Fortunate VPN
This Let's Defend alert was triggered from the Rule Name SOC257 - VPN Connection Detected from Unauthorized Country, with Event ID 225. Suspicious signin attempts from Vietnam, were they successful?
The Logs Aren't Alright
A new social media star arises, fans asking personal questions, sponsor emails raining like crazy. The case CloutHaus: Social Media leads to Compromise teaches security awareness going beyond corp boundaries.