Популярное

Музыка Кино и Анимация Автомобили Животные Спорт Путешествия Игры Юмор

Интересные видео

2025 Сериалы Трейлеры Новости Как сделать Видеоуроки Diy своими руками

Топ запросов

смотреть а4 schoolboy runaway турецкий сериал смотреть мультфильмы эдисон
dTub
Скачать

A Planned Methodology for Forensically Sound IR in Office 365 - SANS DFIR Summit 2018

Автор: SANS Digital Forensics and Incident Response

Загружено: 2018-11-08

Просмотров: 7952

Описание:

A planned methodology for developing and implementing a forensically sound incident response plan in Microsoft’s Office 365 cloud environment must be thoroughly researched and re-evaluated over time as the system evolves, new features are introduced, and older capabilities are deprecated. This
presentation will walk through the numerous forensic, incident response, and evidentiary aspects of Office 365. The presentation is based on two years’ worth of collection of forensics and incident
response data in Microsoft’s Office 365 and Azure environments. It combines knowledge from more than a hundred Office 365 investigations, primarily centered around Business Email Compromise (BEC) and insider threat cases.

Devon Ackerman (@AboutDFIR), Associate Managing Director, Kroll Cyber Security

A Planned Methodology for Forensically Sound IR in Office 365 - SANS DFIR Summit 2018

Поделиться в:

Доступные форматы для скачивания:

Скачать видео mp4

  • Информация по загрузке:

Скачать аудио mp3

Похожие видео

Threat Hunting in Microsoft 365 Environment

Threat Hunting in Microsoft 365 Environment

Digital Forensics Truths That Turn Out To Be Wrong - SANS DFIR Summit 2018

Digital Forensics Truths That Turn Out To Be Wrong - SANS DFIR Summit 2018

ShellBag Forensics

ShellBag Forensics

Monitoring and Incident Response in Azure AD

Monitoring and Incident Response in Azure AD

Business Email Compromise (BEC) & Phishing Investigations in Office365

Business Email Compromise (BEC) & Phishing Investigations in Office365

Веб-трансляция SANS — Архитектура Zero Trust

Веб-трансляция SANS — Архитектура Zero Trust

Finding and Decoding Malicious Powershell Scripts - SANS DFIR Summit 2018

Finding and Decoding Malicious Powershell Scripts - SANS DFIR Summit 2018

Анализ заголовков электронных писем и криминалистическое расследование

Анализ заголовков электронных писем и криминалистическое расследование

Attacking and Defending the Microsoft Cloud (Office 365 & Azure AD)

Attacking and Defending the Microsoft Cloud (Office 365 & Azure AD)

Windows MACB Timestamps (NTFS Forensics)

Windows MACB Timestamps (NTFS Forensics)

Incident Response in the Cloud (AWS) - SANS Digital Forensics & Incident Response Summit 2017

Incident Response in the Cloud (AWS) - SANS Digital Forensics & Incident Response Summit 2017

Incident Response: Business Email Compromise | Virtual Ninja Training with Heike Ritter

Incident Response: Business Email Compromise | Virtual Ninja Training with Heike Ritter

SANS DFIR WEBCAST - Network Forensics What Are Your Investigations Missing

SANS DFIR WEBCAST - Network Forensics What Are Your Investigations Missing

Start-Process PowerShell: Get Forensic Artifact- SANS DFIR Summit 2016

Start-Process PowerShell: Get Forensic Artifact- SANS DFIR Summit 2016

The Cycle of Cyber Threat Intelligence

The Cycle of Cyber Threat Intelligence

LNK-файлы и списки переходов

LNK-файлы и списки переходов

Появляется новый тип искусственного интеллекта, и он лучше, чем LLMS?

Появляется новый тип искусственного интеллекта, и он лучше, чем LLMS?

CSS2017 Session 7 SANS Training - Incident Handling Process

CSS2017 Session 7 SANS Training - Incident Handling Process

The Energy Storage Problem No One Explained Properly

The Energy Storage Problem No One Explained Properly

Mac_apt –The Smarter and Faster Approach to macOS Processing - SANS DFIR Summit 2018

Mac_apt –The Smarter and Faster Approach to macOS Processing - SANS DFIR Summit 2018

© 2025 dtub. Все права защищены.



  • Контакты
  • О нас
  • Политика конфиденциальности



Контакты для правообладателей: [email protected]