Blue Team fundamentals Part Two: Windows Processes.
In part one I touched on logging and the importance of working with what you have already got, rather than trying to reinvent the wheel. There is no point adding more logs if you’re not looking at what is already there. The same can be said…