Threat Hunting with Windows Event Forwarding
Windows Event Forwarding (WEF) is a way you can get event logs from Windows computers and collect them on Windows Event Collector (WEC) servers. In this Threat Hunting with Windows Event Forwarding course, you will use WEF for incident detection with step-by-step instructions for configuration and management workflows.
Course Description
In this course we will learn about Windows Event Forwarding.
Course Goals:
By the end of the course, students should be able to:
Configure Windows Event Logging to capture malicious activity like Lateral Movement
Collect events from Windows servers and workstations using Windows Event Collector (WEC)
Module 1: What is Windows Event Forwarding?
Module 2: Prerequisites for Setting up Windows Event Forwarding
Module 3: Configure Windows Event Collector (WEC)
Module 4: MITRE ATT&CK
Module 5: Lateral Movement Case Study
User Reviews
Be the first to review “Threat Hunting with Windows Event Forwarding”
You must be logged in to post a review.
There are no reviews yet.