Opening book details…
Can I read Windows Incident Response Playbook on EtoBox?
Windows Incident Response Playbook by Nome Sobrenome is a document available to read on EtoBox.
What is Windows Incident Response Playbook about?
This document outlines an incident response methodology for investigating Windows intrusions. It describes 6 stages of the process: 1) Preparation, 2) Identification, 3) Containment, 4) Remediation, 5) Recovery, and 6) Aftermath. For the identification stage, it provides detailed steps for analyzing a compromised Windows system to detect unusual accounts, files, registry entries, processes, automated tasks, log entries and more to identify the intrusion. The containment stage describes disconnecting critica
- Author
- Nome Sobrenome
- Language
- EN