Anti Incident Response - SANS Computer Forensics
Anti Incident Response - SANS Computer Forensics
Anti Incident Response - SANS Computer Forensics
Create successful ePaper yourself
Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.
29<br />
<strong>Anti</strong>-<strong>Incident</strong> <strong>Response</strong> Practices<br />
• Agile Lateral Movement<br />
• Keep your total number of infected hosts moderate<br />
but not large, and keep them fresh<br />
• Create a trail of activity at a faster pace than it<br />
takes to investigate<br />
© 2012 CrowdStrike, Inc. All rights reserved.