From 1f32dff71c04336df2bb339f7682553e0bd5ee4d Mon Sep 17 00:00:00 2001 From: Chris Long Date: Thu, 13 Aug 2020 16:33:12 -0700 Subject: [PATCH] Update README.md --- README.md | 5 +++-- 1 file changed, 3 insertions(+), 2 deletions(-) diff --git a/README.md b/README.md index 5a1fc87..5edccf0 100644 --- a/README.md +++ b/README.md @@ -34,7 +34,8 @@ NOTE: This lab has not been hardened in any way and runs with default vagrant cr * osquery comes installed on each host and is pre-configured to connect to a [Fleet](https://kolide.co/fleet) server via TLS. Fleet is preconfigured with the configuration from [Palantir's osquery Configuration](https://github.com/palantir/osquery-configuration) * Sysmon is installed and configured using [Olaf Hartong's open-sourced Sysmon configuration](https://github.com/olafhartong/sysmon-modular) * All autostart items are logged to Windows Event Logs via [AutorunsToWinEventLog](https://github.com/palantir/windows-event-forwarding/tree/master/AutorunsToWinEventLog) -* SMBv1 Auditing is enabled +* Zeek and Suricata are pre-configured to monitor and alert on network traffic +* Apache Guacamole is installed to easily access all hosts from your local browser ## Requirements for VMware or Virtualbox * 55GB+ of free disk space @@ -137,4 +138,4 @@ I would like to extend thanks to the following sponsors for funding DetectionLab * [elreydetoda](https://github.com/elreydetoda) * [kafkaesqu3](https://github.com/kafkaesqu3) * [anthonysecurity](https://github.com/anthonysecurity) -* +2 private sponsors \ No newline at end of file +* +2 private sponsors