From charlesreid1

m (Bot: Orphan page, add template)
No edit summary
Line 1: Line 1:
{{Orphan|date=April 2017}}
=Initial Notes=
=Initial Notes=



Revision as of 05:03, 18 April 2017

Initial Notes

Intrusion detection system.

Bro training has pcaps with samples of things like malware hiding shells in HTTP traffic. For example:

Hat tip:

Returning Notes

Returning to this: how do you utilize outlier detection, unsupervised learning, and classification to improve networking benchmarks and differentiation of traffic? (Or maybe that's what bro actually does in the first place.)