Accessible Threat Intelligence with the Splunk app "Optiv Threat Intel"

BSides MSP 2016

Presented by: Derek Arnold
Date: Saturday June 11, 2016
Time: 14:00 - 14:45
Location: Lecture Hall

Optiv Threat Intel is a Splunk App that automatically correlates your data with several popular open threat lists. After a few mouse clicks we can start hunting for log sources that are reaching out to, or being attacked from, known attackers. The app can provide increased visibility to potentially malicious activity going on in the organization.

Derek Arnold


KhanFu - Mobile schedules for INFOSEC conferences.
Mobile interface | Alternate Formats