Glue
  • Home
Sign in Subscribe

Wes Lambert

Augusta
Leveraging Threat Intel for Event Enrichment In Security Onion
securityonion

Leveraging Threat Intel for Event Enrichment In Security Onion

Introduction In this article, we’ll walk through how we can leverage Filebeat modules and the enrichment functionality built into the Elastic Stack to facilitate enrichment of log data to include threat intelligence from external sources in Security Onion. By adding pertinent information from threat intel events, we can more
25 May 2022 11 min read
Page 1 of 1
Glue © 2025
  • Sign up
Powered by Ghost