Alex Teixeira
Jun 10, 2024

--

Hey, very good point and thanks for the comments, really appreciated!

In this sense, log footprint = detection opportunities from the common telemetry. It's not about the volume or noise indeed.

You see, it's all about data analysis in the end, as you pointed out, some data sources provide so much noise but still great opportunities but only after some refinement/filtering.

--

--

Alex Teixeira
Alex Teixeira

Written by Alex Teixeira

I design and build detection and SIEM/EDR/XDR content for Enterprise #SecOps teams #DetectionEngineering http://opstune.com

No responses yet