Ransomware Investigation with Splunk | TryHackMe PS Eclipse

Поділитися
Вставка
  • Опубліковано 10 гру 2024

КОМЕНТАРІ • 14

  • @octaviouswilliams1091
    @octaviouswilliams1091 Рік тому

    Amazing video!
    Thank you for giving us detailed insight into your methodology and thought process for this investigation.
    I have learned so much from this one video!

  • @adonistarcio
    @adonistarcio 2 роки тому

    Great video dude. I like how you teach. Keep it up!

  • @UzoukwuEricIyke
    @UzoukwuEricIyke 9 місяців тому

    Wonderful video.
    Really helpful. Thanks 🙏🏽

  • @Cybernetblog
    @Cybernetblog 2 роки тому +2

    Thanks that was great. One question. Instead of having to upload log files to splunk for analysis. Can I connect my devices to splunk directly. Secondly can splunk analyze snort log files? I’ve always seen suricata IDS log files in most demo…. Thirdly can you do a video on Microsoft sentinel. Thanks

    • @rafaelbelahssen2514
      @rafaelbelahssen2514 Рік тому +1

      yes, you can forward your logs using Splunk Universal Forwarder

  • @Ricknroll9
    @Ricknroll9 Рік тому

    Thanks! I was stuck at the end

  • @shivaas6122
    @shivaas6122 Рік тому

    Man loved it❤

  • @adonistarcio
    @adonistarcio 2 роки тому +2

    By the way, the way I could be sure it was script.ps1 was by checking the hashes of all script files which shows them all are distributed by Microsoft, except script.ps1 which also shows as malicious

    • @MotasemHamdan
      @MotasemHamdan  2 роки тому +3

      Definitely right it slipped off my mind.

  • @johnvardy9559
    @johnvardy9559 7 місяців тому

    how i become soc analyst hero?

  • @bczx9071
    @bczx9071 2 роки тому

    First bro