Automating Incident Response and Forensics

Поділитися
Вставка
  • Опубліковано 3 січ 2025

КОМЕНТАРІ •

  • @CloudSecurityGuy
    @CloudSecurityGuy 2 роки тому

    Thanks . This is amazingly powerful

  • @Miglen
    @Miglen 6 років тому +2

    Very interesting!

  • @ddbest21
    @ddbest21 5 років тому +1

    Nice video! He mentioned Github?
    Can the forensics investigation piece be extended?

  • @EricJulien
    @EricJulien 5 років тому +3

    This isn't a critique, but more of a question ... why would I care about just one (or even 2 or 3) failed login(s)? People fat-finger their password all the time.

    • @theycallmeken
      @theycallmeken 4 роки тому +1

      Lets say you have a "break glass" account that only you and someone else on your team knows about. Setting up alerting around that account allows you know when anyone has worked with it or if they have failed at successfully authenticating.