Reminder: Don't neglect ESXi logging!
SSH Tunneling is being used for persistence on ESXi servers.
www.sygnia.co/blog/esxi-ra...
I'll just put this here: detect.fyi/vmware-esxi-...
Reminder: Don't neglect ESXi logging!
SSH Tunneling is being used for persistence on ESXi servers.
www.sygnia.co/blog/esxi-ra...
I'll just put this here: detect.fyi/vmware-esxi-...
π Twas the night before JonMon, and all through the net,
π Defenders were stirring, their systems to vet.
π οΈ The telemetry was hung in EventViewer with care,
β¨ In hopes that Jonny Johnson soon would be there.
π
Friday, January 24th
β° 11 AM MST | 1 PM EST
πΊ
YouTube: youtube.com/watch?v=CqEhtgβ¦
@techy.detectionengineering.net Detection Engineering Weekly gems never fail to provide value!
TIL there is a LOLESXi project. lolesxi-project.github.io/LOLESXi/
Great post by @n-burns.bsky.social on ESXi logging! It includes a tool he made to make running adversarial tests against ESXi easier. It also includes some detections!
detect.fyi/vmware-esxi-...