I published the following diary on isc.sans.org: “Automatic Hunting for Malicious Files Crossing your Network“:
If classic security controls remain mandatory (antivirus, IDS, etc), it is always useful to increase your capacity to detect suspicious activities occurring in your networks.
Here is a quick recipe that I’m using to detect malicious files crossing my networks. The different components are… [Read more]
One comment