YoVDO

Advanced Internet Dataset Combinations for Threat Hunting and Attack Prediction

Offered By: Security BSides San Francisco via YouTube

Tags

Security BSides Courses Data Analysis Courses Cybersecurity Courses Threat Hunting Courses

Course Description

Overview

Explore advanced Internet dataset combinations for threat hunting and attack prediction in this 31-minute conference talk from BSidesSF 2017. Learn to move beyond simple Whois and PDNS lookups, and noisy threat feeds. Discover how to combine SSL cert facet data with tracking IDs, host-pair relationships, and technology stack fingerprints to detect, verify, and stop adversaries' next attacks. Gain insights into analyzing potentially compromised users and determining if IP addresses, domain names, or URLs pose threats. The presentation covers traditional and modern data sets, operationalizing data, and includes examples and a demo, concluding with a comparison of techniques.

Syllabus

Introduction
Traditional data sets
Modern data sets
Operationalizing data
Examples
Demo
Comparison


Taught by

Security BSides San Francisco

Related Courses

TOTAL: CompTIA CySA+ Cybersecurity Analyst (CS0-003)
Udemy
Operationalizing Cyber Threat Intel: Pivoting & Hunting
Pluralsight
Threat Hunting with Yara
Pluralsight
Enterprise Security: Policies, Practices, and Procedures
Pluralsight
Managing and Responding to Security Events Using Azure Sentinel
Pluralsight