SavitarX
Ctrlk
LinkedinTryHackme
  • README
  • CERTIFICATIONS & notes
    • My Roadmap to Becoming a Penetration Tester & Red Team
    • Comp Network
    • Red Team
    • Blue Team
      • Defensive Security
        • Security Monitoring & SIEM Fundamentals
          • Failed Logon Attempts (All Users)
          • Failed Logon Attempts (Disabled Users)
          • Successful RDP Logon Related To Service Accounts
          • Users Added Or Removed From A Local Group (Within A Specific Timeframe)
        • Windows Event Logs & Finding Evil
        • Introduction to Threat Hunting & Hunting With Elastic
        • Understanding Log Sources & Investigating with Splunk
        • Windows Attacks & Defense
        • Intro to Network Traffic Analysis
        • Intermediate Network Traffic Analysis
        • Working with IDS/IPS
        • Introduction to Malware Analysis
        • YARA & Sigma for SOC Analysts
        • Introduction to Linux Forensics
      • Digital Forensics and Incident Response
    • Web Pentesting
  • Writeups
    • Tryhackme
  • Machines to pratice for
    • CPTS Preparation
    • OSEP
  • The Computer Science and Engineering program
    • Read this
    • Computer Science
    • Security
Powered by GitBook
On this page
  1. CERTIFICATIONS & notes
  2. Blue Team
  3. Defensive Security

Security Monitoring & SIEM Fundamentals

Failed Logon Attempts (All Users)Failed Logon Attempts (Disabled Users)Successful RDP Logon Related To Service AccountsUsers Added Or Removed From A Local Group (Within A Specific Timeframe)
PreviousDefensive SecurityNextFailed Logon Attempts (All Users)