Building a Windows Security Monitoring Lab with Sysmon and Splunk
A few weeks back I worked on setting up a Windows security monitoring lab environment. The goal was to get Windows event logs and Sysmon telemetry flowing into Splunk so I can start analyzing real att
connorhartecybersecurity.hashnode.dev4 min read