DEF CON Forum Site Header Art

Announcement

Collapse
No announcement yet.

Packet Acquisition: Building the Haystack

Collapse
X
 
  • Filter
  • Time
  • Show
Clear All
new posts

  • Packet Acquisition: Building the Haystack

    Packet hacking doesn't happen without packets. There are multiple methods to get packets from a network; from local tcpdump and Wireshark all the way to enterprise wide tapping and span aggregation. In this talk, we'll discuss enterprise packet acquisition strategies and challenges, and the methods, tools, and techniques necessary to build the data foundation for effective network-based detection and forensics.

    Garbage data in means garbage analysis out. Chris and Pete have spent decades working with Fortune 500 NOC and SOC teams to implement advanced packet analysis solutions, build better packet pipelines, and get more from those packets.

    Speaker(s): Chris Abella, Pete Anderson

    Location: Packet Hacking Vlg

    Discord: https://discord.com/channels/7082082...42376883306526

    Event starts: 2020-08-09 11:00 (11:00 AM) PDT (UTC -07:00)

    Event ends: 2020-08-09 12:00 (12:00 PM) PDT (UTC -07:00)

    For the most up-to-date information, please either visit https://info.defcon.org, or use HackerTracker, which is available for iOS and Android. This is an automated message, and this data was last modified 2020-07-29T01:18 (UTC).
    Starts
    August 9, 2020 11:00
    Ends
    August 9, 2020 12:00
    Location
    Packet Hacking Vlg
Working...
X