Detecting in-memory attacks with Sysmon and Azure Security Center

added by DotNetKicks
11/2/2017 5:09:29 PM

1 Kicks, 322 Views

Tim Burrell Principal Security Engineering Manager, Microsoft Threat Intelligence Center In-memory attacks are on the rise and attracting increasing attention, as reported, for example, in these posts, SentinelOne: In memory attacks loom large, leave little trace, Hunting in memory, and Hunting for in-memory .NET attacks.