dispatch · @dispatch
537 followers · 3059 posts · Server ioc.exchange
ITSEC News · @itsecbot
1259 followers · 34702 posts · Server schleuss.online
Tanisha L. Turner · @cybersecdiva
137 followers · 29 posts · Server infosec.exchange

My entry for the Elastic Advent Calendar 2022 is now available 🤩:
"How to build a cluster for Elastic Security: Best practices for creating and generating security data in Elastic Cloud"

Happy Holidays everyone! ❄️☃️😊

discuss.elastic.co/t/321832

#infosec #elasticsecurity #elastic #cloud #elasticcloud #elasticadventcalendar

Last updated 2 years ago

Antony "no h" Saba · @awsaba
61 followers · 55 posts · Server hachyderm.io

Yikes, just saw news about at affecting people 😢

❤️ to all and especially Endgame crew

#layoffs #elastic #elasticsecurity

Last updated 2 years ago

HCS ▋ · @superruserr
1273 followers · 2875 posts · Server infosec.exchange
HCS ▋ · @superruserr
1273 followers · 2875 posts · Server infosec.exchange

YAML config based on the Palantir Windows Event Forwarding Guidance (can combine with a couple of YML configs, linked in that entry).

hannahsuarez.github.io/2021/YA

YMMV

#security #cybersecurity #infosec #elasticsecurity #blueteam

Last updated 4 years ago

HCS ▋ · @superruserr
1273 followers · 2875 posts · Server infosec.exchange

YAML configs for:

1. NSA Events to Monitor List hannahsuarez.github.io/2021/Wi

2. Events from the Windows 10 and Windows Server 2016 Security auditing and monitoring reference hannahsuarez.github.io/2021/Wi

3. Exploit protection events based on attack surface reduction events hannahsuarez.github.io/2021/Ex

And, which Windows auditing events require failure and success logging?
hannahsuarez.github.io/2021/Wh

YMMV!

I have a few more to share next week.

#security #cybersecurity #infosec #elasticsecurity #blueteam

Last updated 4 years ago