- Course
Incident Response & Threat Hunting Using Bro/Zeek Data
BSides Huntsville | Incident Response & Threat Hunting Using Bro/Zeek Data | Alex Kirk
- Course
Incident Response & Threat Hunting Using Bro/Zeek Data
BSides Huntsville | Incident Response & Threat Hunting Using Bro/Zeek Data | Alex Kirk
Get started today
Access this course and other top-rated tech content with one of our business plans.
Try this course for free
Access this course and other top-rated tech content with one of our individual plans.
This course is included in the libraries shown below:
- Security
What you'll learn
The open source Zeek network security monitor provides valuable data for incident responders and threat hunters alike. This talk will discuss how to use that data to lower the time necessary to find attackers on your network, as well as ways that advanced users can take Zeek's scripting language to create powerful, flexible detection logic that goes beyond traditional point-in-time IDS signatures.