hSOC Part 5 - Adding a Wazuh Agent to Windows 10 for Security Monitoring

  • Опубликовано: День назад

    Two3 CybersecurityTwo3 Cybersecurity
    подписчиков: 398

    Let's monitor events from our Windows 10 Testing Client by installing the Wazuh Agent on it. For this we'll be logging into the Wazuh web interface, and following the "Deploy a new agent" wizard.
    Don't worry about the large amount of events from the SCA (Security Configuration Assessment), it's done when a new agent is deployed for audit and compliance purposes.
    In the next videos, we'll ingest Sysmon and PowerShell logs to get some more visibility on our client before starting to analyse some malicious activity.
    ➡️ Subscribe to Two3 Cybersecurity here to never miss a beat: / @two3cyber
    💻 MY SETUP
    CPU: Intel i7-9700k @ 4.9GHz All Cores
    RAM: Corsair Vengeance LPX 32GB 3200MHz DDR4
    GPU: ASUS TUF NVIDIA RTX 3070Ti
    MoBo: Gigabyte Z390 AORUS Ultra
    Case: Fractal Design Define R4 Black Pearl
    K+M: Durgod K320 TKL + MX Master 3S
    Mic: Shure MV7 Podcast Microphone
    Cam: Logitech Brio 4K Webcam with HDR
    #cybersecurity #wazuh #two3cyber #soc

Далее

Windows Security Tips

18:33

Windows Security Tips

CyberCPU Tech

Просмотров 37 тыс.

Wazuh 101 - Part 1: Getting started with Wazuh, Open Source EDR, presented by Jesse Moore

39:49

Клоун А4 Стал СУПЕРГЕРОЕМ !

33:55

Клоун А4 Стал СУПЕРГЕРОЕМ !

A4

Просмотров 4,9 млн

🪫 #codymillers

00:18

🪫 #codymillers

Cody Miller

Просмотров 2,3 млн

ПЕРЕУЧЕТ. Глава 3: драка

00:51

ПЕРЕУЧЕТ. Глава 3: драка

oxxxymironofficial

Просмотров 266 тыс.

【鬥羅大陸】小舞的遙控器好神奇! #鬥羅大陸#唐三#小舞

00:16

hSOC Part 1 - Better PowerShell Event Logging

4:03

hSOC Part 1 - Better PowerShell Event Logging

Two3 Cybersecurity

Просмотров 549

Wazuh IDS and Endpoint Detection and Response Guide | TryHackMe Wazuh

30:03

Windows Security settings you must change ASAP!

9:51

Windows Security settings you must change ASAP!

Liron Segev

Просмотров 108 тыс.

hSOC Part 4b - SSH'ing into Wazuh and Server Password Change

5:38

hSOC Part 4b - SSH'ing into Wazuh and Server Password Change

Two3 Cybersecurity

Просмотров 393

Introduction To Wazuh SIEM

17:30

Introduction To Wazuh SIEM

HackerSploit

Просмотров 91 тыс.

08 Installing Sysmon, Winlogbeat and creating a Kibana Index

13:22

08 Installing Sysmon, Winlogbeat and creating a Kibana Index

2Cs - ASCTE Cyber 401

Просмотров 895

Elastic Agent + Fleet

8:49

Elastic Agent + Fleet

Gerson Neto

Просмотров 2,2 тыс.

Игровой ПК на комплекте c AliExpress за 12000р!!

12:00

Игровой ПК на комплекте c AliExpress за 12000р!!

НостальжиПК

Просмотров 25 тыс.

LENOVO LEGION GO. Лучше, чем STEAM DECK?

19:26

LENOVO LEGION GO. Лучше, чем STEAM DECK?

Игорь Линк

Просмотров 373 тыс.