Splunk in Action: From SPL to PCAP
blogs.cisco.com·20h
🕵️Network Forensics
Preview
Report Post

Conference Wi-Fi networks are a chaotic environment where thousands of devices, each with their own history and configuration, converge and connect.

A common challenge is that attendees’ laptops and other devices, configured for ‘safer’ home or corporate environments, often connect to these conference networks with an implicit level of trust. This exposes sensitive secrets, which an opportunistic attacker can exploit.

The Security Operations Centre (SOC) at Cisco Live Melbourne is on the frontlines of this challenge. To effectively protect the network and educate attendees, our analysts need to rapidly understand the torrent of data flowing through our systems. We leverage powerful tools like Endace, which provides us with invaluable full packet capture …

Similar Posts

Loading similar posts...