Ty Anderson

Results 10 comments of Ty Anderson

hi thanks for helping out! I was glancing at this article below. I gotta look deeper into this, the past few days I've been more concentrated on prepping the project...

alright I did some research tonight on options and the most common ones seem to be the major enterprise ones. most have trials but I don't want registration to be...

looks like these often split roles like file integrity monitoring, network traffic analysis, data loss prevention, etc **OS solutions I've come across a few times now:** OSSEC Tripwire Wazuh Open...

@PolymorphicOpcode you interested in setting up Wazuh or OSSEC as services in the Docker compose file to see how they work and how to onboard the other machines to the...

im not super familiar w blue tools, but I imagine there'll be an agent on each box, or a logging process on each box that sends results to a central...

@jorgef I've found this book helpful, would you like to include it in your references?

I have the same issue, and I think I've traced the error to the source. If you investigate `/tmp/shuffledns-549633477/massdns-stdout-946412799`, you'll see it's probably over 1m lines and over 100MB. Mine...

this file size check should safely handle errors (but doesn't solve root issue). lmk if you want me to PR it. I haven't tested it, and I'm not sure what...

I have a solution working locally that properly parses the file, even if huge. for example, parsing my 450MB file now takes 10s using a streamer and uses golang wildcard...

after looking deeper into the code, I found a few more bugs within the wildcard removal feature. I've opted to create my own massdns results parser, so I won't be...