les_v3gtables
Results
3
comments of
les_v3gtables
7.B) Data from Local System, Data Compressed, Data Encrypted, Exfiltration Over Alternative Protocol
Unfortunately I don’t have Zeek in my environment - I’m attempting to accomplish something similar with Palo Alto Firewalls data (using their ‘file’ logs which leverage file decoders). We get...
This is literally one of the biggest gaps preventing me from adopting this in our SOC. *PLEASE* add this
Yes, we would like JIRA integration too