Discover how to effectively identify malicious actors using network flow data in this 40-minute conference talk from BSides Knoxville 2015. Learn about a cost-effective and time-efficient approach to analyzing large volumes of network traffic, utilizing 35 million flows with just two analysts in a mere five minutes. Gain insights into practical techniques for detecting threats and anomalies without the need for expensive tools or resources.
Overview
Syllabus
Track 103 Finding Bad Guys with 35 million Flows 2 Analysts 5 Minutes and 0 Dollars Russell Butturin