In this video I am going to show you how to get notified when there is an ongoing Phishing attack against an IIS webserver. Then, when a phishing attack is detected, how to include the client IP address the attack is being executed from within the email notification subject.
This tutorial builds on-top of parts 1, 2, and 3 of IIS Log Consolidation, Monitoring and Reporting.
If you haven't already read or watched these tutorials, I suggest you read or watch these tutorials first.
For more information see: https://www.cornerbowlsoftware.com/Te...