Kieran Jessup - Cyber Security Architect

pretengineer

home whoami blog projects tools
Home / Blog / unit42

Posts tagged: unit42

1 post

November 21, 2025
htb sherlock blue

HTB Sherlock - Unit 42: Sysmon Log Analysis & UltraVNC Intrusion Detection

DFIR analysis of Sysmon logs to detect and investigate an UltraVNC-based intrusion campaign, focusing on file creation events, process execution, and network indicators.

Read More →