Introducing the RITA VM: Hunting for Bad Guys on Your Network For Free with Math.
DerbyCon V - Unity
Presented by:
Derek Banks,
Brian Furham,
John Strand,
Joff Thyer
Date: Saturday September 26, 2015
Time: 10:00 - 10:50
Location: Track 3
Track: Teach Me
RITA = Real Intelligence Threat Analysis, a full ELK VM with all the Hunt Teaming goodies we use at BHIS. Beacon analysis? Check! URL Analysis? Check! DNS Analysis? Check! Kansa import and Visualization? Check Math? Check!
John Strand
Derek Banks
Joff Thyer
Brian Furham