DFSP # 320 - Lateral MM and Event Logs

Digital Forensic Survival Podcast - A podcast by Digital Forensic Survival Podcast - Tuesdays

Podcast artwork

Categories:

This week I’m going to cover detecting lateral movement using Windows event logs. This is not the Windows fast triage method I covered in previous episodes. This is more in-depth and focuses on specific attack tools and strategies seen in actual cases. Going into this level of detail is beyond the scope of a typical episode, however there is some research that has very granular details on the tools and methods you can use. I’ll have that coming up right after this.

Visit the podcast's native language site