Eric Partington

Log - Lateral Movement - Logging required eventID's ?

Blog Post created by Eric Partington Employee on Dec 20, 2016

This is a helper report for the lateral movement report pack and alerting capability that was released a while back.


This will query for the eventID's that are required to trip the alerting and reporting that were released, to make it easier to understand if the required data is available for the content that was published.



1 report

8 rules


Imports into Threats - Windows Lateral Movement