Applied network security monitoring: collection, detection, and analysis /
Chris Sanders, Jason Smith
- 496 páginas: ilustraciones; 27 cm
The practice of applied network security monitoring - Planning data collection - The sensor platform - Session data - Full packet capture data - Packet string data - Detection mechanisms, indicators of compromise, and signatures - Reputation-based detection - Signature-based detection with snort and suricata - The bro platform - Anomaly-based detection with statistical data - Using canary honeypots for detection - Packet analysis - Friendly and threat intelligence - The analysis process - Security onion control scripts - Important security onion files and directories - Packet headers - Decimal / Hex / ASCII Conversion Chart.
9780124172081
Seguridad de la información Bases de datos--Seguridad Seguridad informática