Phish Fights and Not So Long Nights - Integrating Security Onion and Sublime Platform
Offered By: Security Onion via YouTube
Course Description
Overview
Explore the integration of Security Onion and Sublime Platform in this 46-minute presentation featuring Wes Lambert and Josh Kamdjou. Learn how to effectively triage Sublime email alerts within Security Onion, streamlining incident response and reducing threat identification time. Discover techniques for pivoting to Sublime for in-depth investigation of suspicious emails, extracting valuable context and indicators. Understand how to enrich and correlate Sublime alerts with various Security Onion data sources, including Zeek HTTP/DNS/TLS records, Suricata alerts, and full PCAP. Gain insights into creating a comprehensive defense against email-based attacks by combining Security Onion's robust capabilities with Sublime Platform's innovative approach to email security.
Syllabus
Phish Fights and Not So Long Nights with Security Onion and Sublime Platform
Taught by
Security Onion
Related Courses
An Introduction to Computer NetworksStanford University via Independent Computer Networks
University of Washington via Coursera Computer Networking
Georgia Institute of Technology via Udacity Cybersecurity and Its Ten Domains
University System of Georgia via Coursera Model Building and Validation
AT&T via Udacity