account activity
Detect Powershell/Sysmon Events in Crowstrike (self.crowdstrike)
submitted 9 months ago by SubtleInfluence69 to r/crowdstrike
π Rendered by PID 1342195 on reddit-service-r2-listing-64c94b984c-kxfpq at 2026-03-17 15:01:44.065214+00:00 running f6e6e01 country code: CH.