DFSP # 320 - Lateral MM and Event Logs

This week I’m going to cover detecting lateral movement using Windows event logs. This is not the Windows fast triage method I covered in previous episodes. This is more in-depth and focuses on specific attack tools and strategies seen in actual cases. Going into this level of detail is beyond the scope of a typical episode, however there is some research that has very granular details on the tools and methods you can use. I’ll have that coming up right after this.

Om Podcasten

Listen to talk about computer forensic analysis, techniques, methodology, tool reviews and more.