From charlesreid1

No edit summary
Line 14: Line 14:
* http://wiki.securityweekly.com/wiki/index.php/Episode336
* http://wiki.securityweekly.com/wiki/index.php/Episode336


=Returning Notes=
=Notes=
 
How would you integrate outlier detection, unsupervised learning, and classification algorithms to improve networking benchmarks and differentiation of traffic?
 
What does Bro do "under the hood" and how can that be improved by machine learning?
 


Returning to this: how do you utilize outlier detection, unsupervised learning, and classification to improve networking benchmarks and differentiation of traffic? (Or maybe that's what bro actually does in the first place.)


[[Category:Security]]
[[Category:Security]]
[[Category:Networking]]
[[Category:Networking]]
[[Category:Network Monitoring]]

Revision as of 05:04, 18 April 2017

Initial Notes

Intrusion detection system.

Bro training has pcaps with samples of things like malware hiding shells in HTTP traffic. For example:

Hat tip:

Notes

How would you integrate outlier detection, unsupervised learning, and classification algorithms to improve networking benchmarks and differentiation of traffic?

What does Bro do "under the hood" and how can that be improved by machine learning?