Talk Description: Threat hunting is often misunderstood. This talk is meant to dispel some misconceptions as well as build a foundation to perform hunts in any network. It’s not about just tools or just data, you’ll need both and an understanding of the stories they tell. After building the fundamentals, we will walk though some hunt scenarios to find those dark hooded intruders. Happy hunting.
Bio: Zach Bevilacqua is just a security guy in a security world, hoping to enlighten the security boys and girls. In real life I’m a security engineer in the healthcare industry who believes compliance is achieved through security, not security being achieved through compliance. I’ve been called a certificate sherpa, a PowerShell oracle, and a computer wizard. I’m not not sure how true any of that is but you can make your own judgments.
Source:
https://www.youtube.com/watch?v=SzbABydoz0kUploader:
BSidesROC