Watch Tanium Security Workflow: Basic Hunting for Evidence of an Attack in New Channel | Channify

c-H2QjoysbnrLJKxkT 3123983 Ln7leEAejRE
Views 335
Likes
Comments
Published Jun 7, 2019
Channel Tanium

Add More Videos To your Channel

Tanium Security Workflow: Basic Hunting for Evidence of an Attack Tanium Platform Version 7.3; Tanium Threat Response Version 1.2 This video provides a thorough walk through and discussion around the different sensors, questions, and enterprise hunting capabilities within the Tanium platform. Examples of real time analysis using Index and asking basic questions (like running processes) are reviewed, in addition to historical analysis using Trace based questions. (Part 4 of a 7-part series): https://www.youtube.com/playlist?list=PL5QhX4gOcFFXRdoc1oHrpdADiszuKbrK4 Live Connections for file systems (starts at 2:00) Running processes within the Threat Response hunting platform (starts at 3:48) Trace established connections (starts at 7:20) Brower history and process details for hunting (starts at 11:25) Injected threads (starts at 14:58) Gathering live information from an endpoint (starts at 18:20) DLL load order hijacking (starts at 21:44)