Data Driven Security

Data Driven Security


Data Driven Security - Episode 11

November 02, 2014

Episode 11

In this episode, Jay & Bob talk Squirrels, Pigs & Maps with Preeminent Data Scientist Jason Trost from ThreatStream, and take a look at what's made the headlines in the data science community since last show.

Resources / people featured in the episode

- Watch the UNEDITED BLOOPER REEL! http://www.youtube.com/watch?v=3TYr11e9Rjw

- Jason Trost https://twitter.com/jason_trost

- covert.io blog http://www.covert.io/

- ThreatStream http://threatstream.com/

- Clairvoyant Squirrel: Large Scale Malicious Domain Classification http://www.slideshare.net/jasontrost/flo-con-clairvoyant-squirrel-final

- Binary Pig http://blog.cloudera.com/blog/2013/11/binarypig-scalable-static-binary-analysis-over-hadoop/

- Binary Pig github repo https://github.com/endgameinc/binarypig

- Modern Honey Network http://threatstream.com/blog/mhn-modern-honey-network

- Roll Your Own IP Attack Graphs with IPew http://datadrivensecurity.info/blog/posts/2014/Oct/roll-your-own-ip-attack-graphs/

- Map or Don't Map - http://uxblog.idvsolutions.com/

- DAVIX 2014 Released - http://secviz.org/content/davix-2014-released - http://www.secviz.org/node/89
* flowtag (PCAP interactive network trace viewer) - http://chrislee.dhs.org/projects/flowtag.html
* Gephi
* ELK
* PicViz http://www.picviz.com/en/index.html => references http://www.cs.uic.edu/~kzhao/Papers/06_ICDM_Zhao_Visual.pdf & http://gbook.yolasite.com/resources/2002-Keim-Visualization%20in%20DM-IEEE%20Trans%20Vis.pdf
* iPython / RStudio
* dns_browse/dns_tree http://www.isi.edu/~johnh/SOFTWARE/DNS/ (dig enhancers)

- Lynn Cherny "roundup of recent text analytics & vis work" - http://blogger.ghostweather.com/2014/10/a-roundup-of-recent-text-analytics-and.html

- How a fraud detection algorithm consipred to ruin my recent trip - http://junkcharts.typepad.com/numbersruleyourworld/2014/10/how-a-fraud-detection-algorithm-conspired-to-ruin-my-recent-trip.html

- Collecting all IPv4 WHOIS records in Python - http://tech.marksblogg.com/all-ipv4-whois-records.html

- Linked Small Multiples - http://flowingdata.com/2014/10/15/linked-small-multiples/