Showing posts with label open source. Show all posts
Showing posts with label open source. Show all posts

Tuesday, February 22, 2011

Webinar: Integrating Open Source Intelligence with ArcOSI

Join me today for a webinar of how integrating Open Source Intelligence within ArcSight ESM using ArcOSI.

If you would like to register: http://www.arcsight.com/webinars/watch/integrating-open-source-intelligence-osint/

Topics we will cover:

What is OSINT and how has it become a powerful SIEM use cases for 2011. The following webinar will cover:
• Why A/V does not cut it anymore
• How to detect the new threat: APT, client-side, malware
• What OSINT is
• An introduction to ArcSight Open Source Intelligence (ArcOSI)

Monday, December 14, 2009

Barnyard2 the NEW Snort output processor

Sadly there are few who know about the excellent continuation of the original and stale but popular Barnyard code.

The great guys who manage Securix Live and NSM Now! Opensource projects have taken on updating and improving on the original Barnyard code.

Some of the new features are bug fixes, Unified2 support, support of Snort 2.8.5.1 and a slew of output plugins (mysql,postgres,syslog,cef,tcpdump,prelude,etc)

If you are a user of the old Barnyard code for high performance Snort log processing then I very highly recommend you give Barnyard2 a spin...

Download here:
http://www.securixlive.com/barnyard2/download.php

Thursday, June 4, 2009

Wireless Keyboard Sniffing

New Free Open Source utility for sniffing keystrokes on a wireless keyboard! If you have heard my talks on RFID before you will remember that regardless how weak the signal is the guy with the big antenna always wins!

The tool is called Keykeriki and is available here:

http://www.remote-exploit.org/Keykeriki.html


Keyboard Sniffer Keykeriki from Max Moser on Vimeo.