이 페이지의 콘텐츠는 선택하신 언어로 제공되지 않습니다. Elastic은 다양한 언어로 콘텐츠를 제공하기 위해 최선을 다하고 있습니다.조금만 더 기다려주세요!

Author

Articles by Aaron Jewitt

Principal Security Analyst, Elastic

Videos

How to detect malicious browser extensions using Elastic

Learn how the Elastic Infosec team created a full inventory of all browser extensions using osquery and Elastic Security with examples on building detections to alert the security team when a known bad browser extension is installed on a workstation.

Videos

Inventory to insight: How Elastic’s asset inventory powers InfoSec use cases

See how Elastic’s asset inventory has evolved into a critical tool for InfoSec, transforming from a basic inventory to a powerful solution that addresses real-world cybersecurity challenges.

Videos

Reducing false positives with automated SIEM investigations from Elastic and Tines

Discover how Elastic's InfoSec team saves thousands of hours per month by using Tines to automate SIEM alert investigations while reducing false positives and detect compromised accounts.

Videos

Detecting account compromise with UEBA detection packages

Detecting a compromised account is one of the most challenging detections to build. This blog shows one approach we are using internally at Elastic to create detections that alert when multiple new events are seen for a user.

Videos

Detection engineering — Maximizing analyst efficiency using Cardinality Threshold rules on your alerts

Using Threshold rules to create alerts on your alerts is a great way to maximize your analyst effectiveness without sacrificing visibility. By using these rules, security analysts spend less time investigating false positives.

Videos

Elastic Security로 malware 분석 샌드박스를 구축하는 방법

이 블로그 게시물에서는 Elastic InfoSec 팀이 Elastic Stack과 Elastic 엔드포인트 보안을 사용하여 무료 소프트웨어로 완벽하게 계측된 malware 분석 샌드박스를 구축하는 방법에 대해 설명합니다.