Главная
Study mode:
on
1
Intro
2
Premise
3
Live example
4
What is DNS tunneling
5
What are DNS requests
6
What is a tunnel
7
Bearfruit analysis
8
NetFlow analysis
9
ATP analysis
10
escalate
11
DNS hijacking
12
Internal IP address
13
DNS traffic
14
Microsoft TCL
15
Microsoft ML Misfire
16
Conclusions
17
Questions
Description:
Explore the concept of Big Dark Data and its implications for cybersecurity in this 23-minute talk by Federico Charosky from Quorum Cyber. Delve into DNS tunneling, examining its mechanics and potential threats. Learn about various analysis techniques, including Bearfruit, NetFlow, and ATP, to detect and mitigate DNS-based attacks. Investigate real-world examples of DNS hijacking and internal IP address exploitation. Gain insights into Microsoft's TCL and machine learning applications in cybersecurity, including potential misfires. Conclude with a comprehensive understanding of Big Dark Data's role in modern cyber threats and defense strategies.

Big Dark Data - Federico Charosky, Quorum Cyber - Update

The Cyber Academy
Add to list