Simplifying Your Operational Threat Hunt Planning
ID: 797f47c5-daf9-51f8-8cac-6f8a4386f380
STIX ID: report--797f47c5-daf9-51f8-8cac-6f8a4386f380
Feed Name: TrustedSec blog
This is a practical, step-by-step Threat Hunting program guide that demonstrates how to plan and validate hunts using the MITRE ATT&CK framework (example focusing on TA0008 lateral movement and sub-technique T1021.006 — WinRM), Atomic Red Team attack simulation for testing, and SIEM/SOC operationalization (logging, Sysmon, PowerShell script block logging, detection queries and alerting).
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
