You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
@@ -33,11 +33,11 @@ note = """## Triage and analysis
33
33
- Check for any recent remote authentication attempts or sessions on the affected host to determine if this activity is associated with lateral movement or not.
34
34
- Investigate the timeline of the registry change to correlate with any other suspicious activities or alerts on the host, such as the execution of unusual processes or network connections.
35
35
36
-
37
36
### False positive analysis
38
37
39
38
- Software updates or installations that modify COM settings.
40
39
- Automated scripts or management tools that adjust COM configurations.
40
+
41
41
### Response and remediation
42
42
43
43
- Immediately isolate the affected system from the network to prevent further unauthorized access or lateral movement by the adversary.
0 commit comments