Quick Data Exfiltration Exercise with Security Onion - 2021-07-14

  Рет қаралды 7,020

Security Onion

Security Onion

2 жыл бұрын

Special thanks to Brad Duncan for sharing this pcap at malware-traffic-analysis.net!
www.malware-traffic-analysis....
If you’re a blue teamer, make sure you hit that Like button and make it turn blue! Don’t forget to subscribe to the channel to help us reach 6,000 subscribers! If you have any words of encouragement for the Security Onion team, please feel free to leave them in the comments below. For questions and problems, please go to securityonion.net/discuss and start a new discussion there.
Download Security Onion:
securityonion.net/download
Documentation:
securityonion.net/docs
Questions or Problems:
If you have questions or problems, please feel free to create a discussion at securityonion.net/discuss
Training:
securityonionsolutions.com/tr...
Hardware Appliances:
securityonionsolutions.com/ha...

Пікірлер: 14
@kevinellis9239
@kevinellis9239 2 жыл бұрын
I for one really appreciate what you guys have done and seconion 2.0 still impresses me even months after being announced. And these short videos are great definitely keep them coming. Helps give me training ideals for my team
@security-onion
@security-onion 2 жыл бұрын
Thanks, glad you like it!
@brianmattingly8419
@brianmattingly8419 2 жыл бұрын
I know this is a bit elementary ... but what installation are you running that you get a GUI? I'm trying to follow along by installing SO in a VMware Workstation VM. I've imported the PCAP (I had to turn it into an .img file and add as a CD-ROM) but can't click on the "You've imported the PCAP, use this very long link" in order to paste it into a browser. Any tips?
@security-onion
@security-onion 2 жыл бұрын
You can get a GUI by installing the Analyst environment: docs.securityonion.net/en/2.3/analyst-vm.html If you have further questions or problems, please start a new discussion at: securityonion.net/discuss Thanks!
@DONBIZZY3
@DONBIZZY3 Жыл бұрын
Thanks for the video, do you have any resources available for security onion without the GUI, just linux?
@security-onion
@security-onion Жыл бұрын
If you have questions or problems, please start a new discussion at securityonion.net/discuss
@ryoka1g
@ryoka1g 2 жыл бұрын
Greetings i have a question. I have cisco 9200 switch and i have created a span port that i have sent it directly to my esxi (to security onion port for traffic sniffing) and works really good. But i have decided that i dont want the whole payload and total packet capturing. Instead i want NetFlow but i cant find a way to send NetFlow to Security Onion. Is there a way??
@security-onion
@security-onion 2 жыл бұрын
If you have questions or problems, please start a new discussion at securityonion.net/discuss Thanks!
@chromefinch
@chromefinch Жыл бұрын
Awesome walkthrough! Thank you! I tested this with a chrome.exe download, but the hash didn't match. Is that expected?
@security-onion
@security-onion Жыл бұрын
If you have questions or problems, please start a new discussion at securityonion.net/discuss. Thanks!
@gguestdub3518
@gguestdub3518 7 ай бұрын
A question, how i create custom alerts please help me uu
@security-onion
@security-onion 7 ай бұрын
If you have questions or problems, please start a new discussion at securityonion.net/discuss
@cesaralejandrocalle6959
@cesaralejandrocalle6959 2 жыл бұрын
Como puedo liberar espacio en mi servidor onion?, que debo borrar?
@security-onion
@security-onion 2 жыл бұрын
If you have questions or problems, please start a new discussion at securityonion.net/discuss
How to know if your PC is hacked? Suspicious Network Activity 101
10:19
The PC Security Channel
Рет қаралды 1,2 МЛН
Heartwarming Unity at School Event #shorts
00:19
Fabiosa Stories
Рет қаралды 23 МЛН
БАБУШКИН КОМПОТ В СОЛО
00:23
⚡️КАН АНДРЕЙ⚡️
Рет қаралды 16 МЛН
Iron Chin ✅ Isaih made this look too easy
00:13
Power Slap
Рет қаралды 36 МЛН
Security Onion Essentials 2.3 - Ad Hoc Hunting
32:53
Security Onion
Рет қаралды 25 М.
Wireshark - Malware traffic Analysis
16:01
Hack eXPlorer
Рет қаралды 196 М.
SOC Analyst Skills - Wireshark Malicious Traffic Analysis
24:19
Gerald Auger, PhD - Simply Cyber
Рет қаралды 56 М.
Bootstrap your Network Security Monitoring with Security Onion
10:54
Attack Detect Defend
Рет қаралды 11 М.
Security Onion 2.4 - Setup Netflow
11:15
Garrett Beasley
Рет қаралды 1,2 М.
Ingesting Netflow in Security Onion
14:00
Security Onion
Рет қаралды 7 М.
Heartwarming Unity at School Event #shorts
00:19
Fabiosa Stories
Рет қаралды 23 МЛН