Популярное

Музыка Кино и Анимация Автомобили Животные Спорт Путешествия Игры Юмор

Интересные видео

2025 Сериалы Трейлеры Новости Как сделать Видеоуроки Diy своими руками

Топ запросов

смотреть а4 schoolboy runaway турецкий сериал смотреть мультфильмы эдисон
dTub
Скачать

Unconventional Logging and Detection - SANS Tactical Detection Summit 2018

Автор: SANS Institute

Загружено: 2019-02-11

Просмотров: 3855

Описание:

SIEM Summit 2019 Agenda: http://www.sans.org/u/UIC

Presenter:
Justin Henderson, SANS Institute

Log collection and detection go hand in hand, yet both are difficult. Are you allowed to deploy a log agent or not? Can you change system settings to generate the logs you need? The problem is the answer may be no to both questions. Even if the answer is yes, some detection capabilities cannot be done with standard logging and collection.

All is not lost. Windows, Linux, Unix, and Mac systems all have unconventional methods of log collection and detection that augment standard processes. This talk focuses on using alternative methods such as PowerShell, Python, or built-in binaries to generate custom logs and covers multiple use cases on what detection techniques those logs provide. Example: ARP cache poisoned? How about a detection technique that produces zero logs until it happens and then generates and ships off the record directly to your platform of choice.

Unconventional Logging and Detection - SANS Tactical Detection Summit 2018

Поделиться в:

Доступные форматы для скачивания:

Скачать видео mp4

  • Информация по загрузке:

Скачать аудио mp3

Похожие видео

Top 5 Things to Know About Azure Active Directory Logs - SANS Tactical Detection Summit

Top 5 Things to Know About Azure Active Directory Logs - SANS Tactical Detection Summit

Using the NIST AI Risk Management Framework // Applied AI Meetup October 2023

Using the NIST AI Risk Management Framework // Applied AI Meetup October 2023

Build it Once, Build it Right: Architecting for Detection - SANS Tactical Detection Summit 2018

Build it Once, Build it Right: Architecting for Detection - SANS Tactical Detection Summit 2018

Microsoft Keynote: Defending Against Modern Threats

Microsoft Keynote: Defending Against Modern Threats

Доклад Google Cloud: как избежать ошибок в динамично меняющемся ландшафте

Доклад Google Cloud: как избежать ошибок в динамично меняющемся ландшафте

Музыка для глубокого фокуса для улучшения концентрации — 12 часов эмбиентной учебной музыки для конц

Музыка для глубокого фокуса для улучшения концентрации — 12 часов эмбиентной учебной музыки для конц

ISO 42001 Explained: The New AI Governance Standard & What It Means for Your Business

ISO 42001 Explained: The New AI Governance Standard & What It Means for Your Business

Beyond Best Practice: How We Really Build a Safer Digital World with Curtis Dukes

Beyond Best Practice: How We Really Build a Safer Digital World with Curtis Dukes

Рабочая музыка для глубокой концентрации и сверхэффективности

Рабочая музыка для глубокой концентрации и сверхэффективности

Morning December ❄️  Happy songs to start your day Playlist  - Live 24/7 - Radio

Morning December ❄️ Happy songs to start your day Playlist - Live 24/7 - Radio

The Hidden Conflicts Inside Every Cyber Team with Dr. Nikki Robinson

The Hidden Conflicts Inside Every Cyber Team with Dr. Nikki Robinson

BODYBUILDERS VS CLEANER  | Anatoly GYM PRANK #56

BODYBUILDERS VS CLEANER | Anatoly GYM PRANK #56

Relaxing Music Radio — Future Garage for Smooth Workflow

Relaxing Music Radio — Future Garage for Smooth Workflow

AI Governance, Risk & Compliance Fundamentals Masterclass

AI Governance, Risk & Compliance Fundamentals Masterclass

SANS 2025 Cloud Security Exchange: Expert Panel

SANS 2025 Cloud Security Exchange: Expert Panel

Quantum’s Leap: How Cyber Leaders Are Preparing for the Post-Encryption Era with Applied Quantum

Quantum’s Leap: How Cyber Leaders Are Preparing for the Post-Encryption Era with Applied Quantum

OffSec Live | SOC-200: Combining the Logs in SIEM

OffSec Live | SOC-200: Combining the Logs in SIEM

Teach to Sell: Leading Security Conversations with Influence in Threat Modeling and Secure by Design

Teach to Sell: Leading Security Conversations with Influence in Threat Modeling and Secure by Design

Storage и FS - что подходит для enterprise

Storage и FS - что подходит для enterprise

December Jazz: Sweet Jazz & Elegant Bossa Nova to relax, study and work effectively

December Jazz: Sweet Jazz & Elegant Bossa Nova to relax, study and work effectively

© 2025 dtub. Все права защищены.



  • Контакты
  • О нас
  • Политика конфиденциальности



Контакты для правообладателей: [email protected]