|
1.1.1. Watching from the Dark
|
1.1 - SEP1 - Fundamentals |
25 |
|
|
1.1.2. The Meerkats are Watching
|
1.1 - SEP1 - Fundamentals |
26 |
|
|
1.1.3. Big Brother is Watching You
|
1.1 - SEP1 - Fundamentals |
27 |
|
|
1.1.4. Stenographers do it With Speed
|
1.1 - SEP1 - Fundamentals |
28 |
|
|
1.1.5. Human Machine Interface
|
1.1 - SEP1 - Fundamentals |
30 |
|
|
1.1.6. Door Number 1
|
1.1 - SEP1 - Fundamentals |
1 |
|
|
1.2.1. Kicking the Tires on Kibana
|
1.2 - SEP1 - Define the Environment |
25 |
|
|
1.2.2. The Pattern of Life
|
1.2 - SEP1 - Define the Environment |
50 |
|
|
1.2.3. What's in a Name?
|
1.2 - SEP1 - Define the Environment |
51 |
|
|
1.2.4. Who's in charge here?
|
1.2 - SEP1 - Define the Environment |
52 |
|
|
1.2.5. The Name Game
|
1.2 - SEP1 - Define the Environment |
53 |
|
|
1.2.6. The Way Out is Through
|
1.2 - SEP1 - Define the Environment |
100 |
|
|
1.2.8. One of these things is not like the other.
|
1.2 - SEP1 - Define the Environment |
200 |
|
|
1.2.9. Section 2 Recap
|
1.2 - SEP1 - Define the Environment |
25 |
|
|
1.3.1. The outsiders, what are they saying?
|
1.3 - SEP1 - I've Seen Stranger Things |
50 |
|
|
1.3.2. Who is open for conversation?
|
1.3 - SEP1 - I've Seen Stranger Things |
51 |
|
|
1.3.3. What Does This Code Mean?
|
1.3 - SEP1 - I've Seen Stranger Things |
25 |
|
|
1.3.4. Who's asking the questions?
|
1.3 - SEP1 - I've Seen Stranger Things |
52 |
|
|
1.3.5. How Long?
|
1.3 - SEP1 - I've Seen Stranger Things |
26 |
|
|
1.3.6. How Much?
|
1.3 - SEP1 - I've Seen Stranger Things |
27 |
|
|
1.3.7. How Many?
|
1.3 - SEP1 - I've Seen Stranger Things |
28 |
|
|
1.3.8. Suspicious Malicious
|
1.3 - SEP1 - I've Seen Stranger Things |
29 |
|
|
1.3.9. Painting the Picture
|
1.3 - SEP1 - I've Seen Stranger Things |
30 |
|
|
1.3.10. Not the only one.
|
1.3 - SEP1 - I've Seen Stranger Things |
53 |
|
|
1.3.11. My Name and Number
|
1.3 - SEP1 - I've Seen Stranger Things |
31 |
|
|
1.3.12. Can I get some Service?
|
1.3 - SEP1 - I've Seen Stranger Things |
50 |
|
|
1.2.7. Service is Key [BONUS]
|
1.2 - SEP1 - Define the Environment |
101 |
|
|
1.3.14. Section 2 Recap
|
1.3 - SEP1 - I've Seen Stranger Things |
25 |
|
|
1.3.13. It's not my fault.
|
1.3 - SEP1 - I've Seen Stranger Things |
150 |
|
|
1.4.1. Create the Narrative
|
1.4 - SEP1 - Story Time |
100 |
|
|
1.5.1. BONUS
|
1.5 - SEP1 - BONUS |
200 |
|
|
2.1.1. Key to Success
|
2.1 - SEP2 - A Word From Our Sponsor |
25 |
|
|
2.2.1. Kicking the Tires on Kibana
|
2.2 - SEP2 - Define the Environment |
25 |
|
|
2.2.2. Let's Have a Conversation
|
2.2 - SEP2 - Define the Environment |
50 |
|
|
2.2.3. The Pattern of Life
|
2.2 - SEP2 - Define the Environment |
51 |
|
|
2.2.4. Don't Talk to Me
|
2.2 - SEP2 - Define the Environment |
52 |
|
|
2.2.5. Dynamic or Static?
|
2.2 - SEP2 - Define the Environment |
100 |
|
|
2.2.6. Go With the Flow
|
2.2 - SEP2 - Define the Environment |
101 |
|
|
2.2.7. Big Data
|
2.2 - SEP2 - Define the Environment |
102 |
|
|
2.2.8. Section 2 Recap
|
2.2 - SEP2 - Define the Environment |
26 |
|
|
2.3.1. One of these is not like the others
|
2.3 - SEP2 - Finding Things That Are Interesting |
100 |
|
|
2.3.2. Starting to get interesting 1
|
2.3 - SEP2 - Finding Things That Are Interesting |
50 |
|
|
2.3.3. Starting to get interesting 2
|
2.3 - SEP2 - Finding Things That Are Interesting |
51 |
|
|
2.3.4. What time does this start?
|
2.3 - SEP2 - Finding Things That Are Interesting |
52 |
|
|
2.3.5. What time does this end?
|
2.3 - SEP2 - Finding Things That Are Interesting |
53 |
|
|
2.3.6. What is going on here?
|
2.3 - SEP2 - Finding Things That Are Interesting |
100 |
|
|
2.3.7. Section 3 Recap
|
2.3 - SEP2 - Finding Things That Are Interesting |
25 |
|
|
2.4.1. Rules are useful
|
2.4 - SEP2 - Looking Through the Known Bad |
200 |
|
|
2.4.2. How to catch a rat
|
2.4 - SEP2 - Looking Through the Known Bad |
50 |
|
|
2.4.3. A file is seen
|
2.4 - SEP2 - Looking Through the Known Bad |
51 |
|
|
2.4.4. It gets worse
|
2.4 - SEP2 - Looking Through the Known Bad |
52 |
|
|
2.4.5. Section 4 Recap
|
2.4 - SEP2 - Looking Through the Known Bad |
25 |
|
|
2.5.1. Caught in a web
|
2.5 - SEP2 - Connecting the Dots |
100 |
|
|
2.5.2. Down time
|
2.5 - SEP2 - Connecting the Dots |
50 |
|
|
2.5.3. PSCP
|
2.5 - SEP2 - Connecting the Dots |
51 |
|
|
2.5.4. Big data 2
|
2.5 - SEP2 - Connecting the Dots |
101 |
|
|
2.5.5. Big data 3
|
2.5 - SEP2 - Connecting the Dots |
102 |
|
|
2.5.6. Cause and effect
|
2.5 - SEP2 - Connecting the Dots |
103 |
|
|
2.5.7. Cause and effect 2
|
2.5 - SEP2 - Connecting the Dots |
104 |
|
|
2.5.8. Piecing it all together
|
2.5 - SEP2 - Connecting the Dots |
105 |
|
|
2.7.1. Create the Narrative
|
2.7 - SEP2 - Story Time |
100 |
|
|
2.6.2. BONUS 2
|
2.6 - SEP2 - BONUS |
201 |
|
|
2.6.3. BONUS 3
|
2.6 - SEP2 - BONUS |
202 |
|
|
2.6.1. BONUS 1
|
2.6 - SEP2 - BONUS |
200 |
|
|
3.1.1. Key to Success
|
3.1 - SEP3 - Seriously, This is Important |
25 |
|
|
3.2.1. Kicking the Tires on Kibana
|
3.2 - SEP3 - Define the Environment |
25 |
|
|
3.2.2. Who is talking to us?
|
3.2 - SEP3 - Define the Environment |
50 |
|
|
3.2.4. What Are We Talking About?
|
3.2 - SEP3 - Define the Environment |
52 |
|
|
3.2.5. Call Me...Maybe
|
3.2 - SEP3 - Define the Environment |
53 |
|
|
3.2.3. Let's Be Social
|
3.2 - SEP3 - Define the Environment |
51 |
|
|
3.2.6. Section 2 Recap
|
3.2 - SEP3 - Define the Environment |
26 |
|
|
3.3.1. Remarkably Dogged Personality
|
3.3 - SEP3 - A Whole Lotta Noise |
50 |
|
|
3.3.2. Timeline 1
|
3.3 - SEP3 - A Whole Lotta Noise |
51 |
|
|
3.3.3. Many Tries
|
3.3 - SEP3 - A Whole Lotta Noise |
100 |
|
|
3.3.4. Identify the Service
|
3.3 - SEP3 - A Whole Lotta Noise |
25 |
|
|
3.3.5. Identify the Activity
|
3.3 - SEP3 - A Whole Lotta Noise |
26 |
|
|
3.3.6. What Could Be Doing This?
|
3.3 - SEP3 - A Whole Lotta Noise |
101 |
|
|
3.3.7. Section 3 Recap
|
3.3 - SEP3 - A Whole Lotta Noise |
27 |
|
|
3.4.1. Same But Different
|
3.4 - SEP3 - A little less noisy |
50 |
|
|
3.4.2. Now who is talking?
|
3.4 - SEP3 - A little less noisy |
51 |
|
|
3.4.3. Is it working?
|
3.4 - SEP3 - A little less noisy |
52 |
|
|
3.4.4. To succeed or not to succeed?
|
3.4 - SEP3 - A little less noisy |
53 |
|
|
3.4.5. Section 4 Recap
|
3.4 - SEP3 - A little less noisy |
25 |
|
|
3.5.1. Let's start a conversation
|
3.5 - SEP3 - End Goal |
50 |
|
|
3.5.2. What do you want to talk about?
|
3.5 - SEP3 - End Goal |
51 |
|
|
3.5.3. I need to ask for something
|
3.5 - SEP3 - End Goal |
52 |
|
|
3.5.4. Did someone click this?
|
3.5 - SEP3 - End Goal |
53 |
|
|
3.5.5. When did this happen?
|
3.5 - SEP3 - End Goal |
54 |
|
|
3.5.6. Piecing it all together
|
3.5 - SEP3 - End Goal |
55 |
|
|
3.6.1. Create the Narrative
|
3.6 - SEP3 - Story Time |
100 |
|
|
4.1.1. Key to Success
|
4.1 - SEP4 - Seriously, This is Really Important |
25 |
|
|
4.2.1. Kicking the Tires on Kibana
|
4.2 - SEP4 - Define the Environment |
25 |
|
|
4.2.2. Who are we talking to?
|
4.2 - SEP4 - Define the Environment |
50 |
|
|
4.2.3. Who is answering us?
|
4.2 - SEP4 - Define the Environment |
51 |
|
|
4.2.4. What are we yelling about?
|
4.2 - SEP4 - Define the Environment |
52 |
|
|
4.2.5. What are we whispering about?
|
4.2 - SEP4 - Define the Environment |
53 |
|
|
4.2.6. Allow me to serve you.
|
4.2 - SEP4 - Define the Environment |
54 |
|
|
4.2.7. What are we answering?
|
4.2 - SEP4 - Define the Environment |
55 |
|
|
4.2.8. Section 2 Recap
|
4.2 - SEP4 - Define the Environment |
26 |
|
|
4.3.1. What data?
|
4.3 - SEP4 - File Transfers |
50 |
|
|
4.3.2. A deeper look
|
4.3 - SEP4 - File Transfers |
51 |
|
|
4.3.3. What is happening here?
|
4.3 - SEP4 - File Transfers |
52 |
|
|
4.3.4. Who done it?
|
4.3 - SEP4 - File Transfers |
53 |
|
|
4.3.5. Did it work?
|
4.3 - SEP4 - File Transfers |
54 |
|
|
4.3.6. Timelining 1
|
4.3 - SEP4 - File Transfers |
100 |
|
|
4.3.7. We've had one, yes. What about a second transfer?
|
4.3 - SEP4 - File Transfers |
55 |
|
|
4.3.8. Full picture
|
4.3 - SEP4 - File Transfers |
57 |
|
|
4.3.9. Who touched my file?
|
4.3 - SEP4 - File Transfers |
58 |
|
|
4.3.10. How'd he do that?
|
4.3 - SEP4 - File Transfers |
101 |
|
|
4.3.11. Timelining 2
|
4.3 - SEP4 - File Transfers |
58 |
|
|
4.3.12. Section 3 Recap
|
4.3 - SEP4 - File Transfers |
25 |
|
|
4.4.1. What else is he doing?
|
4.4 - SEP4 - Investigating Further |
50 |
|
|
4.4.2. Is this normal?
|
4.4 - SEP4 - Investigating Further |
51 |
|
|
4.4.3. When did the strange start?
|
4.4 - SEP4 - Investigating Further |
100 |
|