SELKS-Suri Tips and Tricks - E15: Suricata Webinar Archive - Exploring Essential Open Source Tools

4 views
Skip to first unread message

Mark Durrett

unread,
Feb 8, 2024, 1:40:22 PMFeb 8
to se...@googlegroups.com

Hi folks,


Here is your weekly Suricata and SELKS tips and tricks email. Each week we'll feature a blog article or PDF document with something we hope you'll find useful.


We have another archived webinar to share with you today. 


Moderated by one of the founding fathers of Suricata, Matt Jonkman, this “Detect to Protect” webinar archive features a panel discussion with the developers of seven Suridata-related open-source tools. 


It was truly a “must attend” event for security analysts, threat hunters, researchers, and any cyber defender who uses the Suricata open-source network security engine in their tech stack.


In this webinar, the developer-panelists introduced attendees to seven modern open-source tools:


  • SELKS - turnkey Suricata-based open source intrusion detection system (IDS), Network Security Monitor (NSM) and threat hunting system

  • Suricata Language Server - a tool that adds syntax checking, performance guidance, and auto-completion to popular text editors for Suricata signature developers. 

  • Lateral movement ruleset - free Suricata ruleset specifically focused on detecting lateral movement in Microsoft Windows environments

  • Jupyter playbooks - powerful threat hunting  resource that anyone can access and use as a reference for analyzing Suricata EVE logs

  • GopherCAP - an innovative PCAP manipulation application that provides accurate playback of extra large PCAP files directly from tar archives.

  • Splunk App by Stamus Networks - free and open source Splunk app for investigating and hunting in the IDS alert data and the protocol transaction logs generated by Suricata sensors.

  • Security Analyst’s Guide to Suricata - the world's first practical guide for unlocking the full potential of Suricata. 


Check it out: https://www.stamus-networks.com/hubfs/SN-Webinar-Suricata-Open-Source-Tools-sm.mp4


Let us know what you think.


Cheers!


Mark



--

D. Mark Durrett

Chief Marketing Officer

Stamus Networks

mdur...@stamus-networks.com

+1 (919) 345-9515

stamus-networks.com

The content of this email is confidential and intended for the recipient specified in message only. It is strictly forbidden to share any part of this message with any third party, without a written consent of the sender. If you received this message by mistake, please reply to this message and follow with its deletion, so that we can ensure such a mistake does not occur in the future.

Reply all
Reply to author
Forward
0 new messages