From 0b0cff1b9ac2ec1b518edc815078a9846af6f1cf Mon Sep 17 00:00:00 2001 From: Adel Ka Date: Wed, 12 Sep 2018 14:15:27 +1000 Subject: [PATCH] Updated Windows section --- README.md | 5 ++++- 1 file changed, 4 insertions(+), 1 deletion(-) diff --git a/README.md b/README.md index 420b9bf..c167cf2 100644 --- a/README.md +++ b/README.md @@ -146,7 +146,10 @@ #### Windows -- dddd +- [Threat Hunting via Windows Event Logs](https://www.sans.org/summit-archives/file/summit-archive-1524493093.pdf) +- [Windows Logging Cheat Sheets](https://www.malwarearchaeology.com/cheat-sheets/) +- [Active Directory Threat Hunting](https://adsecurity.org/wp-content/uploads/2017/04/2017-BSidesCharm-DetectingtheElusive-ActiveDirectoryThreatHunting-Final.pdf) +- [Windows Hunting](https://github.com/beahunt3r/Windows-Hunting) - A collection of Windows hunting queries ##### Sysmon