{"version":1,"pages":[{"id":"-M9HL2eM4l9Igtbug22U","title":"Home","pathname":"/","siteSpaceId":"sitesp_UkqLP","description":""},{"id":"-M9HLFEH6hCduZKrDfYr","title":"Team Posts","pathname":"/team-posts","siteSpaceId":"sitesp_UkqLP","description":""},{"id":"-M9HLFEIsl-o9pMLPmD4","title":"Anton's Posts","pathname":"/team-posts/antons-posts","siteSpaceId":"sitesp_UkqLP","description":"","breadcrumbs":[{"label":"Team Posts"}]},{"id":"-MC7QvH8l_3lJ9nUMz8S","title":"Hunt Fast: Splunk and tstats","pathname":"/team-posts/antons-posts/splunktstats","siteSpaceId":"sitesp_UkqLP","description":"","breadcrumbs":[{"label":"Team Posts"},{"label":"Anton's Posts"}]},{"id":"-M9HLFEJ7Q4B2cY_lM88","title":"Hunting Malicious Macros","pathname":"/team-posts/antons-posts/hunting-malicious-macros","siteSpaceId":"sitesp_UkqLP","description":"","breadcrumbs":[{"label":"Team Posts"},{"label":"Anton's Posts"}]},{"id":"-M9HLFEKbVgfEij6fEpi","title":"Get Azure Key Vault Data into Splunk","pathname":"/team-posts/antons-posts/get-azure-key-vault-data-into-splunk","siteSpaceId":"sitesp_UkqLP","description":"","breadcrumbs":[{"label":"Team Posts"},{"label":"Anton's Posts"}]},{"id":"-M9HLFELThhmbEhlx5-s","title":"Edit Your Sysmon Config in Style","pathname":"/team-posts/antons-posts/edit-your-sysmon-config-in-style","siteSpaceId":"sitesp_UkqLP","description":"","breadcrumbs":[{"label":"Team Posts"},{"label":"Anton's Posts"}]},{"id":"-M9HLFEM-VsVikOvT3ER","title":"Wrangle Your PowerShell Transcript Logs with Apache Nifi","pathname":"/team-posts/antons-posts/wrangle-your-powershell-transcript-logs","siteSpaceId":"sitesp_UkqLP","description":"","breadcrumbs":[{"label":"Team Posts"},{"label":"Anton's Posts"}]},{"id":"-M9HLFENzLzudeBy7zo6","title":"(Very) Basic Elastic SIEM Set up","pathname":"/team-posts/antons-posts/elastic-siem-set-up","siteSpaceId":"sitesp_UkqLP","description":"","breadcrumbs":[{"label":"Team Posts"},{"label":"Anton's Posts"}]},{"id":"-M9HLFEOrN8TarOvLKnB","title":"Moloch + Suricata + JA3","pathname":"/team-posts/antons-posts/moloch-suricata-ja3","siteSpaceId":"sitesp_UkqLP","description":"","breadcrumbs":[{"label":"Team Posts"},{"label":"Anton's Posts"}]},{"id":"-M9HLFEPKYRig-W7VG8B","title":"Making Lateral Movement Difficult in an Active Directory Environment","pathname":"/team-posts/antons-posts/making-lateral-movement-difficult-in","siteSpaceId":"sitesp_UkqLP","description":"","breadcrumbs":[{"label":"Team Posts"},{"label":"Anton's Posts"}]},{"id":"-M9HLFEQIOxqVk4ukjNA","title":"Taking a Closer Look at PowerShell Download Cradles","pathname":"/team-posts/antons-posts/taking-closer-look-at-powershell","siteSpaceId":"sitesp_UkqLP","description":"","breadcrumbs":[{"label":"Team Posts"},{"label":"Anton's Posts"}]},{"id":"-M9HLFERKm_5tq5VljYY","title":"Visualize Windows Logs With Neo4j","pathname":"/team-posts/antons-posts/visualize-windows-logs-with-neo4j","siteSpaceId":"sitesp_UkqLP","description":"","breadcrumbs":[{"label":"Team Posts"},{"label":"Anton's Posts"}]},{"id":"-M9HLFES8DhaEt_NYJ4V","title":"Device Guard - Fixing VMWare Tools","pathname":"/team-posts/antons-posts/device-guard-fixing-vmware-tools","siteSpaceId":"sitesp_UkqLP","description":"","breadcrumbs":[{"label":"Team Posts"},{"label":"Anton's Posts"}]},{"id":"-M9HLFETl9LOub3LlYjy","title":"Offensive Security OSCE (CTP) Review","pathname":"/team-posts/antons-posts/offensive-security-osce-ctp-review","siteSpaceId":"sitesp_UkqLP","description":"","breadcrumbs":[{"label":"Team Posts"},{"label":"Anton's Posts"}]},{"id":"-M9HLFEUFy8tAa6iwZyw","title":"(Attempting) to Detect Responder with Sysmon","pathname":"/team-posts/antons-posts/attempting-to-detect-responder-with","siteSpaceId":"sitesp_UkqLP","description":"","breadcrumbs":[{"label":"Team Posts"},{"label":"Anton's Posts"}]},{"id":"-M9HLFEVJQSHJLklClmk","title":"Working with Sysmon","pathname":"/team-posts/antons-posts/working-with-sysmon","siteSpaceId":"sitesp_UkqLP","description":"","breadcrumbs":[{"label":"Team Posts"},{"label":"Anton's Posts"}]},{"id":"-M9HLFEWN-WVhC24E5yA","title":"Setting Up Sysmon","pathname":"/team-posts/antons-posts/setting-up-sysmon","siteSpaceId":"sitesp_UkqLP","description":"","breadcrumbs":[{"label":"Team Posts"},{"label":"Anton's Posts"}]},{"id":"-M9HLFEX3Ke3ODHbtUE7","title":"Lee's Posts","pathname":"/team-posts/lees-posts","siteSpaceId":"sitesp_UkqLP","description":"","breadcrumbs":[{"label":"Team Posts"}]},{"id":"-M9HLFEYPACFd05_ITZU","title":"Malicious AzureAD Application Registrations","pathname":"/team-posts/lees-posts/malicious-azuread-app-registrations","siteSpaceId":"sitesp_UkqLP","description":"","breadcrumbs":[{"label":"Team Posts"},{"label":"Lee's Posts"}]},{"id":"-M9HLFEZ9JfWaj059gcC","title":"Members","pathname":"/members","siteSpaceId":"sitesp_UkqLP","description":""}]}