<?xml version="1.0" encoding="utf-8"?>
<oembed>
  <version>1</version>
  <type>rich</type>
  <provider_name>Libsyn</provider_name>
  <provider_url>https://www.libsyn.com</provider_url>
  <height>90</height>
  <width>600</width>
  <title>7MS #588: Becoming a Sysmon Sensei with Amanda Berlin</title>
  <description> Today Amanda Berlin from&amp;amp;nbsp;Blumira&amp;amp;nbsp;teaches us how to unlock the power of Sysmon so we can gain insight into the good, bad and ugly things happening on our corporate endpoints! &amp;amp;nbsp;Key takeaways:  Sysmon&amp;amp;nbsp;turns your windows logging up to 11, and pairs well with a config file like&amp;amp;nbsp;this one&amp;amp;nbsp;or&amp;amp;nbsp;this one. Careful if you are are running sysmon on non-SSD drives - the intense number of writes might bring that disk to its knees. Just getting started logging all the things with sysmon? &amp;amp;nbsp;Why not pump those logs into a free logging/alerting system like&amp;amp;nbsp;Wazuh? I think it was&amp;amp;nbsp;SolarWinds log collector&amp;amp;nbsp;I was trying to think of while recording the show,&amp;amp;nbsp;not&amp;amp;nbsp;CloudTrail.    </description>
  <author_name>7 Minute Security</author_name>
  <author_url>https://7MinSec.com</author_url>
  <html>&lt;iframe title="Libsyn Player" style="border: none" src="//html5-player.libsyn.com/embed/episode/id/27979530/height/90/theme/custom/thumbnail/yes/direction/forward/render-playlist/no/custom-color/88AA3C/" height="90" width="600" scrolling="no"  allowfullscreen webkitallowfullscreen mozallowfullscreen oallowfullscreen msallowfullscreen&gt;&lt;/iframe&gt;</html>
  <thumbnail_url>https://assets.libsyn.com/secure/item/27979530</thumbnail_url>
</oembed>
