Overview
Save Big on Coursera Plus. 7,000+ courses at $160 off. Limited Time Only!
Explore the concept of Big Dark Data and its implications for cybersecurity in this 23-minute talk by Federico Charosky from Quorum Cyber. Delve into DNS tunneling, examining its mechanics and potential threats. Learn about various analysis techniques, including Bearfruit, NetFlow, and ATP, to detect and mitigate DNS-based attacks. Investigate real-world examples of DNS hijacking and internal IP address exploitation. Gain insights into Microsoft's TCL and machine learning applications in cybersecurity, including potential misfires. Conclude with a comprehensive understanding of Big Dark Data's role in modern cyber threats and defense strategies.
Syllabus
Intro
Premise
Live example
What is DNS tunneling
What are DNS requests
What is a tunnel
Bearfruit analysis
NetFlow analysis
ATP analysis
escalate
DNS hijacking
Internal IP address
DNS traffic
Microsoft TCL
Microsoft ML Misfire
Conclusions
Questions
Taught by
The Cyber Academy