Login
Download
Skill UI
Browse and discover
10397+
curated skills
All
Development
Artificial Intelligence
Design & Creative
Product & Business
Data Science
Marketing
Soft Skills
Productivity
Engineering
Languages
Search
Correlation Rules
, found
2
results
Default
Newest
Most Downloaded
Detecting Lateral Movement in Enterprise Networks
detecting-lateral-movement-in-network
mukul975/Anthropic-Cybersecurity-Skills
145
A comprehensive guide and framework for detecting attacker lateral movement within enterprise networks. It details the use of network flow analysis (Zeek), authentication log review (Windows Event Logs, Kerberos), and dedicated SIEM correlation rules (Splunk, Elastic) to identify techniques like Pass-the-Hash and RDP hopping. Ideal for threat hunters and security engineers building detection pipelines.
View Details
Correlating Events to Detect APT Lateral Movement
implementing-siem-correlation-rules-for-apt
mukul975/Anthropic-Cybersecurity-Skills
481
This guide details how to implement advanced SIEM correlation rules to detect sophisticated Advanced Persistent Threats (APTs). By chaining multiple event types—including Windows authentication events, process execution telemetry, and network connection logs—across hosts, users can surface complex attack sequences that are invisible to single-event detections. It utilizes Splunk SPL and Sigma rule formats for robust security posture enhancement.
View Details
1
Language
简体中文
English