Designing and Implementing a SIEM: Part 1
Part 1 establishes core SIEM concepts and the implementation considerations that determine success: data sources, parsing, retention, deployment models, and success metrics.
Notes, write-ups, and projects.
Part 1 establishes core SIEM concepts and the implementation considerations that determine success: data sources, parsing, retention, deployment models, and success metrics.
An overview of SMB versions, ports, and common implementations, followed by a hands on reconnaissance workflow to enumerate SMB services and shares with widely used tools.
A step by step Hack The Box Lame walkthrough covering reconnaissance and service enumeration, then exploitation of exposed services including Samba CVE-2007-2447 to gain remote access.