Syndicate

Syndicate content

Flattr


Flattr this

If you like this, you can use flattr. ;)

Imprint

About
eMail: wishinet at gmail . com
PGP ID: 0xCCCA5E74

Jabber: wishi@jabber.ccc.de

Security Data Visualization

txttxtScanning huge networks - much data - wtf?

That's what I thought. Visualization helps. There's a brilliant book by Greg Conti "Security Data Visualization". It's printed in color ;), has fascinating ease and introduces elegant network mapping techniques.

I. e. a pcap player. rumint - give him a pcap and he replays it graphically in Windows.

There's radialnet, which takes nmap's xml and renders it in a 2d python environment. The host you're clicking on get logically centered - it brings up the connection to a living network plan.

The books mentions MUCH more. IDS views, spreads of rootkits visualized - auditing.

Scapy can help you too - of course... A picture is worth a thousand packets :).

Post new comment

The content of this field is kept private and will not be shown publicly.
CAPTCHA
This question is for testing whether you are a human visitor and to prevent automated spam submissions.

Save the nature. Don't print this!


I provide textual exports for every blog entry. However let's save the nature together. The nature is everything around us. Every being should be respected. Save the nature - don't print too much.


Die Umgehung dieser Ausdrucksperre ist nach § 95a UrhG verboten!
Inhaltlich Verantwortlicher gemäß § 10 Absatz 3 MDStV: Marius Ciepluch - Anschrift via eMail. Die eMail Adresse entnehmen sie dem Impresseum dieser englischsprachigen Seite.
Aus Datenschutzgründen habe ich weder offiziellen noch behördlichen Schriftverkehr via eMail. Dazu ist die postalische, beim Dienstleister hinterlegte, Anschrift zu verwenden.

Datenerfassung

Es werden keine personenbezogenen Daten erfasst. Logdaten werden anonymisiert.