Logs Out: An IR Mystery

Presented at CircleCityCon 10.0 (2023), June 23, 2023, 11 a.m. (60 minutes)

Join us for an afternoon who-dun-it – an environment has been murdered and the logs have a secret to tell. You have been invited to the conference room, a few will get a gift from a Mr. Admin, and you all have something in common. Was it Mrs. Peacock in the DC with the reverse shell? Or maybe Colonel Mustard in the ESXi cluster with vCenter creds? Help solve the mystery before it’s too late, and the auditors arrive!
