Hypersec
4.05K subscribers
274 photos
17 videos
210 files
866 links
🔐🔏 تیم عملیات امنیت سورین
ارائه دهنده راهکارهای نوین مرکز عملیات امنیت (SOC)

Soorinsec.ir
۰۲۱-۲۲۰۲۱۷۳۴

instagram : sector_soorin
linkdin : https://www.linkedin.com/company/soorinsec/
Admin:
@Fze01
Download Telegram
🏆List of critical security events to review during an incident

فهرست رویدادهای امنیتی حیاتی که در طول یک حادثه باید بررسی شوند.

#SOC
#EventID
#soorin
@hypersec
شرکت دانش بنیان سورین
👍2🙏2👏1👌1
لاگ های مهم ویندوز جهت مانیتورینگ و تحلیل:


4688: A new process has been created

5156: The Windows Filtering Platform has allowed connection

7045: A service was installed in the system

4657: A registry value was modified

4660: An object was deleted

4663: An attempt was made to access, modify, delete an object

7036: a service has entered the stopped state

7040: a service has disabled

#SOC
#EventID
#soorin
@hypersec

شرکت دانش بنیان سورین
🤩2
logon event type.pdf
601.9 KB
🖇Windows Event Log Analysis & Incident
Response Guid
🔎🔍

#SOC
#EventID
#soorin
@hypersec
✳️شرکت دانش بنیان سورین✳️
🔏SOC Multi Tool🔏

Chrome Extension for quick:

IP/Domain Reputation Lookup
IP/ Domain Info Lookup
Hash Reputation Lookup (
Decoding of Base64 & HEX using CyberChef
File Extension & Filename Lookup

and more (view pic)

https://chrome.google.com/webstore/detail/soc-multi-tool/diagjgnagmnjdfnfcciocmjcllacgkab/

#SOC
#EventID
#soorin
@hypersec
شرکت دانش بنیان سورین
Please open Telegram to view this post
VIEW IN TELEGRAM
👏41