Analyzing DNS Traffic for Malicious Activity Using Open Source Logging Tools
Offered By: YouTube
Course Description
Overview
Explore DNS traffic analysis for malicious activity using open-source logging tools in this 33-minute conference talk from Nolacon 2016. Learn about the basics of DNS monitoring, the Tabasco story, and simple solutions to common problems. Discover various tools, including expensive options and their support levels, as well as common denominators in log processing, indexing, formatting, and shipping. Gain insights into Gray Log, Elastic Search, and DNS amplification. Examine dashboards for data visualization and understand techniques for detecting data exfiltration through DNS traffic.
Syllabus
Introduction
Agenda
The Basics
Tabasco Story
Simple Solution
The Problem
Other Tools
Expensive Tools
Support Levels
Common denominators
Log processing
Log indexing
Log formatting
Log shipping
Log input
Gray Log Sidegar
What is Gray Log
Gray Log 2 Archive
Elastic Search
DNS Amplification
Dashboards
Data Exfiltration
Related Courses
Building Geospatial Apps on Postgres, PostGIS, & Citus at Large ScaleMicrosoft via YouTube Unlocking the Power of ML for Your JavaScript Applications with TensorFlow.js
TensorFlow via YouTube Managing the Reactive World with RxJava - Jake Wharton
ChariotSolutions via YouTube What's New in Grails 2.0
ChariotSolutions via YouTube Performance Analysis of Apache Spark and Presto in Cloud Environments
Databricks via YouTube