PinnedTruvis ThorntonPart 2: Threat Detection Engineering and Incident Response with AuditD and Sentinel — Combine…NOTE: This article is based off the following:8 min read·5 days ago----
PinnedTruvis ThorntonPart 1 : Threat Detection Engineering and Incident Response with AuditD and Sentinel — along how to…NOTE: This article is based off the following and should be followed first:4 min read·May 18, 2024----
PinnedTruvis ThorntonSending OPNSense Syslog, Suricata, and Firewall logs into CRIBL Stream with GEO IP Tagging with log…OPNSense is a great open source firewall but it’s not the most supported in some cases when it comes to sending it’s logs into SIEMs. In…5 min read·Jul 6, 2023----
PinnedTruvis ThorntonCommandline Auditing — Using different tools to security your Linux server and environments.By deault Linux does not offer or have any commandline auditing or logging so you never know who did what, where, when and why. But there…5 min read·Jul 6, 2023--1--1
Truvis ThorntonHow To: Use UFW(Uncomplicated Firewall) and Send the logs to Sentinel and Parse with a function for…UFW is basically a wrapper around IPTables so instead of having to remember how to build out IPTables, UFW makes the process simple…6 min read·May 18, 2024----
Truvis ThorntonHow to: Parsing AuditD Syslog in Microsoft Sentinel with a function and combining the events by EveThese are some helpful links on how to understand AuditD and the log format.6 min read·May 5, 2024----
Truvis ThorntonHow-To Install and Setup: Azure Arc, (AMA) Azure Monitor Agent and (DCR) Data Collection Rules for…With the retirement of Legacy Log analytics, this will go over the new way on how to send logs into Sentinel using Linux using Azure Arc…5 min read·May 4, 2024----
Truvis ThorntonOpnSense Firewall Configuration: Allow remote OpenVPN connection in and access all services and…Have you ever wanted to access your network on the go but not install cloud based applications that you don’t own or trust?8 min read·Apr 21, 2024----
Truvis ThorntonHow to: Create Windows XP Virtual Machine(VM) on Proxmox with Virt— for researching threats…First you will need to find a Windows XP ISO (https://archive.org/search?query=windows+xp)4 min read·Apr 19, 2024----
Truvis ThorntonHow to: Proxmox — Creating a new Microsoft Windows VM with VirtIO drivers for performanceIf you are coming from a VMWare envirnment, this guide will help you with spinning up Windows VMs with the best performance. By default…5 min read·Apr 17, 2024----