Login
Download
Skill UI
Browse and discover
10388+
curated skills
All
Development
Artificial Intelligence
Design & Creative
Product & Business
Data Science
Marketing
Soft Skills
Productivity
Engineering
Languages
Search
CMD
, found
1
results
Default
Newest
Most Downloaded
Hunting Lateral Movement Using WMI Events
hunting-for-lateral-movement-via-wmi
mukul975/Anthropic-Cybersecurity-Skills
476
This skill detects WMI-based lateral movement by analyzing key Windows Security Event ID 4688 and Sysmon Event ID 1 logs. It focuses on identifying suspicious process execution patterns, such as WmiPrvSE.exe spawning unauthorized child processes (cmd.exe, powershell.exe), suspicious command lines, and WMI event subscriptions used for persistence. Ideal for security incident response and threat detection.
View Details
1
Language
简体中文
English