Full width home advertisement

Post Page Advertisement [Top]

I work in the incident response/threat hunting world, and a lot of times my team does not have access to the internet to lookup resources and research findings within the network we are hunting on due to security limitations. We have a security kit comprised of a SEIM and many other tools we plug into the network we are looking at, but a lot of my team is inexperienced and still learning a lot about how our tools work or finding IOCs.

Is there any good solutions or methods for collecting and consolidating internet resources that can be duplicated on an air-gapped network, such as tool documentation, guides, manuals, practices, html pages, ect from the internet? A lot of our tools are hosted within containers, and I was thinking about hosting a local web server from one of these, but the task of gathering all the useful data seems like it take awhile, not to mention formatting dynamic webpages to work in the a non-internet connected environment and indexing it all to make it presentable. submitted by /u/saph27
[link] [comments]


http://dlvr.it/SxLY6n

No comments:

Post a Comment

'; (function() { var dsq = document.createElement('script'); dsq.type = 'text/javascript'; dsq.async = true; dsq.src = '//' + disqus_shortname + '.disqus.com/embed.js'; (document.getElementsByTagName('head')[0] || document.getElementsByTagName('body')[0]).appendChild(dsq); })();

Bottom Ad [Post Page]

| Designed by Colorlib