OSINT
Shortcomings of SIEM - CORRECT ANSWER--doesnt consider OSINT
-expensive to manage
-can be sabotaged
-hard to tune
-siloed information
OSINT definitions - CORRECT ANSWER-intelligence found from publicly available
sources
Why OSINT? - CORRECT ANSWER--tons of it
-whats happening in real world
-
Separation of OSINT- - CORRECT ANSWER-Traditional: facebook, twitter, pastebin,
news sources, shodan
Hacker community: forums, IRC channels, carding shops, DarkNet Marketplace
OSINT can show - CORRECT ANSWER-1) what breaches occurred
2) who is talking about you and how
3) what devices are exposed
4)what tools are being used
OSINT Challenges - CORRECT ANSWER-1) everyone has access which devalues
it
2) Hard to tell which sources to use
3) hard to collect
what to know about your organization - CORRECT ANSWER-1) what assets do you
want to protect?
2)what threats affect you?
3) who do you want to protect yourself from?
Tradional data sources - CORRECT ANSWER-facebook
twitter
pastebin
shodan
news agencys
Shodan search - CORRECT ANSWER-open devices on internet of things
Title
Shortcomings of SIEM - CORRECT ANSWER--doesnt consider OSINT
-expensive to manage
-can be sabotaged
-hard to tune
-siloed information
OSINT definitions - CORRECT ANSWER-intelligence found from publicly available
sources
Why OSINT? - CORRECT ANSWER--tons of it
-whats happening in real world
-
Separation of OSINT- - CORRECT ANSWER-Traditional: facebook, twitter, pastebin,
news sources, shodan
Hacker community: forums, IRC channels, carding shops, DarkNet Marketplace
OSINT can show - CORRECT ANSWER-1) what breaches occurred
2) who is talking about you and how
3) what devices are exposed
4)what tools are being used
OSINT Challenges - CORRECT ANSWER-1) everyone has access which devalues
it
2) Hard to tell which sources to use
3) hard to collect
what to know about your organization - CORRECT ANSWER-1) what assets do you
want to protect?
2)what threats affect you?
3) who do you want to protect yourself from?
Tradional data sources - CORRECT ANSWER-facebook
pastebin
shodan
news agencys
Shodan search - CORRECT ANSWER-open devices on internet of things
Title