Threat Level: green Handler on Duty: Rob VandenBrink

SANS ISC: Log Analysis tips? - SANS Internet Storm Center SANS ISC InfoSec Forums

Watch ISC TV. Great for NOCs, SOCs and Living Rooms:

Sign Up for Free!   Forgot Password?
Log In or Sign Up for Free!
Log Analysis tips?
Gang, the Storm Center list is relatively slow today (we don't use the q word because bad things happen when someone says that :) ), so I thought I'd ask for thoughts from readers on one of the topics I'm most interested in, and that is log analysis.  Log analysis was mentioned in some of our tips of the day last month, most notably Swa's final tip of the day for the month, but I wanted to hear what our readers look for, what tools you use, etc.  I'll collect them and post a summary early next week (so that those who don't read this over the weekend have an opportunity to contribute).  I'll also give some of own favorites in another story this evening (US-time).  Use the contact form to send me your suggestions and thanx in advance.

Jim Clausing, handler on duty
I will be teaching next: Reverse-Engineering Malware: Malware Analysis Tools and Techniques - SANS DFIR Summit & Training 2022


423 Posts
ISC Handler
Sep 9th 2006

Sign Up for Free or Log In to start participating in the conversation!