
Past Event
Threat hunting in SIEM: Detect living-off-the-land + credential dumping
Cybersecurity & Privacy
About This Event
Details
Join us for a hands-on threat hunting session where you’ll learn to detect sophisticated attacks that abuse legitimate system tools and steal credentials!
What You’ll Learn:
Identify living-off-the-land techniques (PowerShell, WMI, certutil abuse)
Spot credential dumping attacks (LSASS dumps, registry extraction)
Master Sysmon log analysis (ETW->EVTX->CSV/JSON workflow)
Build effective detection queries in Splunk