http://motasem-notes.net/en/?p=1446
Hunting Advanced Persistent Threat APT with Splunk | TryHackMe Boss of the SOC V1