Mr.Logg

Search This Blog

Cortex XDR - BIOC RDP

 


Normalt skal det ikke være ms-rdp (mstsc.exe) fra insiden til utsiden.
Hvis du har Cortex XDR så anbefaler jeg å sette opp en BIOC for å få alarm/incident på slike hendelser.






at December 19, 2022
Newer Post Older Post Home

Blog archive

  • ►  2025 (5)
    • ►  October (2)
    • ►  September (3)
  • ►  2024 (11)
    • ►  April (2)
    • ►  March (1)
    • ►  February (6)
    • ►  January (2)
  • ►  2023 (28)
    • ►  December (3)
    • ►  November (5)
    • ►  October (3)
    • ►  September (1)
    • ►  August (7)
    • ►  July (3)
    • ►  May (3)
    • ►  March (1)
    • ►  February (2)
  • ▼  2022 (16)
    • ▼  December (16)
      • Cortex XDR - BIOC RDP
      • Cortex XDR - BIOC Outlook
      • Cortex XDR - Logging og analyse
      • IT Policy og CIS rammeverk
      • Nothing is free
      • IT Asset Management
      • Multi-Factor Authentication
      • PaloAltoNetworks firewall - IOT dynamic
      • PaloAltoNetworks firewall - Sinkhole response page
      • PaloAltoNetworks firewall - NAT DNS
      • PaloAltoNetworks firewall - URL Categories
      • PaloAltoNetworks firewall - Server_to_Internet
      • PaloAltoNetworks firewall - Decrypt
      • PaloAltoNetworks firewall - Object navngiving
      • PaloAltoNetworks firewall - Policy navngiving
      • PaloAltoNetworks firewall - Mailvarsel

Me on LinkedIn

https://www.linkedin.com/in/nils-johan/
Nils Johan Gabrielsen. Simple theme. Theme images by enot-poloskun. Powered by Blogger.