Skip to content
  • Categories
  • Recent
  • Tags
  • Popular
  • World
  • Users
  • Groups
Skins
  • Light
  • Brite
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (Cyborg)
  • No Skin
Collapse
Brand Logo

CIRCLE WITH A DOT

  1. Home
  2. Uncategorized
  3. Is there a _good_ course on Azure forensics I can attend?

Is there a _good_ course on Azure forensics I can attend?

Scheduled Pinned Locked Moved Uncategorized
2 Posts 2 Posters 0 Views
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • cynicalsecurity@bsd.networkC This user is from outside of this forum
    cynicalsecurity@bsd.networkC This user is from outside of this forum
    cynicalsecurity@bsd.network
    wrote last edited by
    #1

    Is there a _good_ course on Azure forensics I can attend?

    Serious question, please don't reply with "Meditation" or "Become a Monk", etc.

    ​

    P.S. Please not a beginner's course, assume I've been messing around in Unix kernels since 1986 and have a pretty decent forensic skill set in civilised operating systems and networks. I just appreciate the subtleties of the VMS heritage of the NT kernel but little above it 🙂

    computerywar@infosec.exchangeC 1 Reply Last reply
    0
    • cynicalsecurity@bsd.networkC cynicalsecurity@bsd.network

      Is there a _good_ course on Azure forensics I can attend?

      Serious question, please don't reply with "Meditation" or "Become a Monk", etc.

      ​

      P.S. Please not a beginner's course, assume I've been messing around in Unix kernels since 1986 and have a pretty decent forensic skill set in civilised operating systems and networks. I just appreciate the subtleties of the VMS heritage of the NT kernel but little above it 🙂

      computerywar@infosec.exchangeC This user is from outside of this forum
      computerywar@infosec.exchangeC This user is from outside of this forum
      computerywar@infosec.exchange
      wrote last edited by
      #2

      @cynicalsecurity I speak purely to it existing, not if it is good nor bad. But sans has a cloud forensics course https://www.sans.org/cyber-security-courses/enterprise-cloud-forensics-incident-response. But as with everything sans, it’s hideously expensive. The author’s blog and/or the sans white paper library may contain enough nuggets for you to make progress with what youre trying to accomplish. My personal experience trying to understand azure logs is ‘here there be dragons.’ and is over the top with dumb design decisions. Actually, the more common response is azure going, ‘logs? lol. lmao.’

      Cisa also has some m365/azure related tooling that may or may not help, https://github.com/cisagov , untitledgoose and scuba something may help point you in the right direction as well.

      1 Reply Last reply
      1
      0
      • R relay@relay.infosec.exchange shared this topic
      Reply
      • Reply as topic
      Log in to reply
      • Oldest to Newest
      • Newest to Oldest
      • Most Votes


      • Login

      • Login or register to search.
      • First post
        Last post
      0
      • Categories
      • Recent
      • Tags
      • Popular
      • World
      • Users
      • Groups