Skip to main content
Video

Mind the Gap, Bro: Using Network Monitoring to Overcome Lack of Host Visibility

Defenders often find themselves in a position where visibility is either not ideal, or even nonexistent – especially for host artifacts. Using the example of ICS environments, this talk will provide a case study of how network visibility via Bro can be leveraged to gain proxy visibility on the host, with a special emphasis on YARA for file analysis. The same example can be applied to other environments where defenders may have little say in host setup, but effectively control the network.

Discover More Resources Using Keyword Tags
Joe Slowik

Never miss the latest ICS news and insights from our experts.

 

Watch the next video

videos
Play Button

Dragos CEO Robert M. Lee Testifies on Cybersecurity for Critical Infrastructure

10.10.24

View Video
Right Arrow

View more videos

Right Arrow

See the Dragos Platform in Action

Take the next step to protect your OT environment now with a free demo