Network Security Consulting Agency Since 1989 - Specialized in Unix, Windows, TCP/IP and Internet
You are here
:
Home
>
Resources
>
Lectures
> Network Flows based forensics of a honeypot
Go to:
HSC Trainings
Search
:
Services
Skills & Expertise
Consulting
ISO 27001 services
Vulnerabilities monitoring
Audit & Assessment
Penetration tests
Vunerability assessment (TSAR)
Forensics
ARJEL
Training courses
E-learning
Conferences
Agenda
Past events
Tutorials
Resources
Thematic index
Tips
Lectures
Courses
Articles
Tools (download)
Vulnerability watch
Company
Hervé Schauer
Team
Job opportunities
Credentials
History
Partnerships
Associations
Press and
communication
HSC Newsletter
Press review
Press releases
Publications
Contacts
How to reach us
Specific inquiries
Directions to our office
Hotels near our office
Network Flows based forensics of a honeypot
Access to the content
Beginning of the presentation
PDF version
[209 KB]
Description
This talk gives an overview of network flows, tools and methods, as used for network forensics of a honeypot.
Context & Dates
Talk made during the SUR / OSSIR meeting, on 9 March 2004.
Author
Yann Berthier
Type
[
-
]
Abstract &
Table of content
Flyleaf
Flux réseau
Argus
Autopsie d'une trace réseau
Méthodologie
24 heures de la vie d'un pot de miel
Il y a des paquets sur Internet ...
Début des hostilités
Où le port 45295 semble mis à profit
Premiers flux émis
Plus on est de fous ...
Du FTP
O surprise - de l'IRC !
Les kiddies ont faim
Conclusions
Related documents
Honeypots
Intrusion detection and network forensic
[6 May 2004 -
]
Ethereal, a multi-purpose network analyzer - how to detect viruses and worms with network analysis
[4 May 2004 -
]
CanSecWest 2002 Conference
[4 May 2002 -
]
Honeypots
[12 March 2002 -
]
Copyright
© 2004, Hervé Schauer Consultants, all rights reserved.
Last modified on 20 April 2004 at 13:41:01 CET - webmaster@hsc.fr
Information on this server
- © 1989-2010 Hervé Schauer Consultants