Skip to content

Opening book details…

Can I read Windows Incident Response Playbook on EtoBox?

Windows Incident Response Playbook by Nome Sobrenome is a document available to read on EtoBox.

What is Windows Incident Response Playbook about?

This document outlines an incident response methodology for investigating Windows intrusions. It describes 6 stages of the process: 1) Preparation, 2) Identification, 3) Containment, 4) Remediation, 5) Recovery, and 6) Aftermath. For the identification stage, it provides detailed steps for analyzing a compromised Windows system to detect unusual accounts, files, registry entries, processes, automated tasks, log entries and more to identify the intrusion. The containment stage describes disconnecting critica

Author
Nome Sobrenome
Language
EN

More by Nome Sobrenome

Browse all works by Nome Sobrenome