(continued) In fact, if you took every one of the FBI's cyber agents and intelligence analysts and focused them exclusively heavily on the China threat, China's hackers would still outnumber FBI cyber personnel by at least 50-to-1.
60+ EventSentry training videos, totaling more than 10 hours of content, are available for free on our YouTube channel: https://t.co/uYBEriw5JZ
The videos cover everything - starting with the overview & installation all the way to configuring anomaly filters (new in v5.1!)
If you're not yet familiar with attack surface reduction using Microsoft Defender, then we recommend this article from @4sysops https://t.co/lPKqdW74sX
Windows Domain Member Servers should not cache more than 4 logons locally - our latest validation scripts verifies this important setting #securitytips#windowssecurity
https://t.co/6t8X2ZXw7Q
While not required by most security frameworks, automatically clearing the page file when Windows shuts down is a recommended best practice by Microsoft. And believe it not, this little known feature has been available since before the Apple iPod was released (in 2001).
Pro-Active vs Re-Active: New validation scripts available:
Network Access: Restrict anonymous access to Named Pipes and Shares
https://t.co/AlC7eKcwIY
Network: Simple TCP/IP Services must not be installed on the system
https://t.co/VXnKTdgPor
#windowssecurity#proactivesecurity
Did you know that disconnected RDP sessions can post a serious security risk? Read more in our latest blog: #rdp#windowssecurity https://t.co/PlMJOAJnRs
Good News: EventSentry v4.2 users can discover all vulnerable #log4j2 instances on their monitored hosts in a few minutes with minimal effort: https://t.co/XhGQLiCV6C
#log4j
Just in time for the holidays, the creators of #emotet are "deploying" a new update for your enjoyment:
https://t.co/urA5CADK9y. If you want to skip this update, make sure your users are trained @KnowBe4 and MS Office is secure (https://t.co/zyhJmTYgnL).
EventSentry users can utilize a new validation script (https://t.co/zyhJmTYgnL) to detect hosts that do not have Application Guard enabled. #0day#exploit#apt#office#CVE-2021-40444
If you're running Win 10 2004 (20H1) build 19041 or later w/ MS Office, then make sure you enable Application Guard (https://t.co/uTPZ6tXb17) to protect against zero-day vulnerabilities. #0day#exploit#apt#office#CVE-2021-4044
We just launched PingSentry, a free cloud-based monitoring system that checks TLS certificates as well as uptime of hosts and ports. Create a free account at https://t.co/vo1ie5QDWF to access PingSentry. #monitoring#uptime#sysadmin
Whether it's visibility, compliance, security or plain old network monitoring - EventSentry helps companies and IT teams regardless of size and budget become proactive. #siem#cmmc#nist#ransomware