Welcome to the new Splunkbase! To return to the old Splunkbase, click here.
Windows Lateral Movement Detection app icon

Windows Lateral Movement Detection

The technology addon "TA-latmov" was designed based off SANS' 2018 Hunt Evil Poster. This poster focuses on lateral movement from forensic evidence found on the source/destination endpoint after the action has occurred. Based on this, I created a series of Windows-based inputs to capture the state for threat hunting and preservation.

splunk product badge

Last Updated
July 2, 2023
Compatibility
Not Available
Rating

0

(0)

Log in to rate this app
Support
Windows Lateral Movement Detection support icon
Not Supported
The technology addon "TA-latmov" was designed based off SANS' 2018 Hunt Evil Poster. This poster focuses on lateral movement from forensic evidence found on the source/destination endpoint after the action has occurred. Based on this, I created a series of Windows-based inputs to capture the state for threat hunting and preservation.

Categories

Created By

Anthony Giallombardo

Type

addon

Downloads

400

Resources

Login to report this app listing