7 Minute Security
7MS #495: Desperately Seeking a Super SIEM for SMBs - Part 5
- Autor: Vários
- Narrador: Vários
- Editor: Podcast
- Duración: 0:39:36
- Mas informaciones
Informações:
Sinopsis
Today we continue our SIEM/SOC evaluation series with a closer look at one particular managed solution and how it fared (very well) against a very hostile environment: the Light Pentest LITE pentesting course! Spoiler alert: this solution was able to detect: RDP from public IPs Password spraying Kerberoasting Mimikatz Recon net commands Hash dumping Hits on a "honey domain admin" account Users with non-expiring passwords Hits on the SSH/FTP/HTTP honeypot