Materials for ASG OTCEP 2024 Purple Team Workshop
TTPs to be executed on Windows OS (VM preferable)
Sysmon to be installed, use the sysmonconfig file uploaded (credits to https://github.com/olafhartong/sysmon-modular)
Ensure SIEM is pulling logs from Windows Logs and Sysmon (Splunk was used as SIEM)