5 tips to improve incident response using packet captures

October 9, 2020 · 5 min read

When an attack happens, the packet data that flows across the network is critical to the incident response lifecycle. Here's 5 tips to greatly improve the success of your security operations using pcaps along with tools like Zeek and Suricata.

Packet analysis

Using Zeek in Packet Analysis

3 min read

Zeek provides a great way to explore your captures and find problems faster. Here is a quick overview of Zeek, how it works, and how you can use it to discover and resolve network and security problems more efficiently.