No SIEM? Sick of manually sifting through Windows event logs? Just want to know who has logged in remotely? Let's use some PowerShell to assist with that.
Get-WinEvent -FilterHashtable @{ LogName='Security'; Id='4624'; Data='10'} | FL TimeCreated,Message
You're welcome. 🛡️