SOF-ELK (Security Operations and Forensics Elasticsearch, Logstash, Kibana) is a pre-configured virtual machine to be used within one of SANS’s forensics classes.
https://github.com/philhagen/sof-elk
https://isc.sans.edu/forums/diary/Adversary+hunting+with+SOFELK/22592/
No comments:
Post a Comment
Note: Only a member of this blog may post a comment.