NetWitness
  • Home
  • Downloads
  • Integrations
    • Netwitness Platform Integrations
    • Third Party Integrations
  • Knowledge Center
  • Community
    • Blogs
    • Discussions
  • Customers
    • Manage Products and Licenses
    • Find my Downloadable Items
  • Partners
    • Partner Program
    • Partner Resources
    • Submit a New Deal Registration
    • Become a Partner
    • NetWitness LinkedIn Partner Hub
  • Education
    • Instructor Led Training Schedule
    • NetWitness Training Catalog
    • Security Awareness Training
    • New Product Readiness
    • On-Demand Virtual Labs
    • Additional Training Information
    • Frequently Asked Questions
    • Contact NetWitness Education Team
  • Support
    • Contact Support
    • Create a New Case
    • View My Cases
    • Product Version Life Cycle
    • Warranty & Replacement Parts
    • Community Support Forum
    • Technical Support Guide

Admin

  • Home
  • /
  • Netwitness blogs
  • /
  • Admin

Using the RSA NetWitness Platform to Detect C&C: goDoH

January 12, 2020
DNS over HTTPS (DoH) was introduced to increase privacy and help prevent against the manipulation...
Read More

Detecting DNS tunneling in RSA NetWitness: DNS2TCP

January 10, 2020
When performing network forensics, all protocols should be analysed, however, some tend to be more...
Read More

Detecting Gh0st RAT in the RSA NetWitness Platform

January 9, 2020
In order to defend their network effectively, analysts need to understand the threat landscape, and...
Read More

Using RSA NetWitness to Detect Credential Harvesting: lsassy

January 6, 2020
A couple of days ago on Github, Hackndo released a tool (https://github.com/Hackndo/lsassy) that is...
Read More

Using RSA NetWitness to Detect C&C: Covenant

December 20, 2019
Introduction Having recently moved into the IR team – where I now have to actually do stuff as...
Read More

Using RSA NetWitness to Detect C&C: ReverseTCP Shell

December 18, 2019
In this blog post, I am going to cover a C&C framework called ReverseTCP Shell,. This was recently...
Read More

RSA NetWitness VLC Load Balancing + Failover

December 16, 2019
(view in My Videos) This video covers in-depth the customization / implementation of VLC load...
Read More

APT Emulation Using CALDERA

December 9, 2019
Over the past year, I have posted multiple blogs whereby I perform APT (Advanced Persistent Threat)...
Read More

Using RSA NetWitness to Detect C&C: WEASEL

December 6, 2019
I was doing some hunting through our lab traffic today and came across some strange looking...
Read More

Amazon Detective and RSA NetWitness Platform Integration

December 4, 2019
UPDATE 31 Mar 2020: Amazon Detective has been made officially GA by AWS as of today! See the notes...
Read More
18 19 20 21 22
Looking for a 100% quality and affordable constructor for your project?
Get A Quote