Operations | Monitoring | ITSM | DevOps | Cloud

Collecting and operationalizing threat data from the Mozi botnet

Detecting and preventing malicious activity such as botnet attacks is a critical area of focus for threat intel analysts, security operators, and threat hunters. Taking up the Mozi botnet as a case study, this blog post demonstrates how to use open source tools, analytical processes, and the Elastic Stack to perform analysis and enrichment of collected data irrespective of the campaign.

Listening to the Hype: OpsRamp featured in eight Gartner Hype Cycles

July is Hype Cycle season, the time of year when Gartner livens up the summer doldrums by updating its eagerly awaited Hype Cycle series of reports. This year’s Hype Cycles demonstrated OpsRamp’s growing brand recognition as we were listed as a representative vendor in eight different Gartner Hype Cycles.

Detecting SeriousSAM CVE-2021-36934 With Splunk

SeriousSAM or CVE-2021-36934 is a Privilege Escalation Vulnerability, which allows overly permissive Access Control Lists (ACLs) that provide low privileged users read access to privileged system files including the Security Accounts Manager (SAM) database. The SAM database stores users' encrypted passwords in a Windows system. According to the Microsoft advisory, this issue affects Windows 10 1809 and above as well as certain versions of Server 2019.

2 Steps V6 - New Features

Check out how 2 Steps can now match elements as well as visual recognition. Add custom Javascript and build synthetic transactions even faster than before. 2 Steps now supports “element matching” as an alternative to image matching in Chrome tests. This major new functionality allows 2 Steps to handle many previously difficult scenarios, for example when the target of a command is pushed off the bottom of the screen or hidden by a popup, or when a style update changes the appearance of a button.

2 Steps v6 Demo

Agentless Synthetic Monitoring. Purpose-built for Splunk. Create active monitoring tests in minutes for Web, Windows, Mobile, Citrix and more in minutes. Watch the latest features in the v6 release in action. 2 Steps now supports “element matching” as an alternative to image matching in Chrome tests. This major new functionality allows 2 Steps to handle many previously difficult scenarios, for example when the target of a command is pushed off the bottom of the screen or hidden by a popup, or when a style update changes the appearance of a button.

JavaScript Logging Basic Tips

In the past few years, JavaScript has evolved in several ways and has come a long way. With the evolving technology, machines are becoming more powerful, and browsers are getting more robust and compatible. In addition, Node.js’s recent development for JavaScript’s execution on servers, JavaScript has been getting more and more popular than ever before.

How to Ensure Patch Compliance

Patch compliance indicates the number of compliant devices in your network. This means the number of computers that have been patched or remediated against security threats effectively. The distribution and deployment of patches accomplish nothing if your devices are not compliant. So to establish a good patch management strategy, it is important to pay attention to the effectiveness and reach of your patch deployment activities.

Getting over on-call anxiety

You've joined a company, or worked there a little while, and you've just now realised that you'll have to do on-call. You feel like you don't know much about how everything fits together, how are you supposed to fix it at 2am when you get paged? So you're a little nervous. Understandable. Here are a few tips to help you become less nervous.

BizTalk Migrator: What is new and what is coming (June 2021 Edition)

BizTalk Migrator tool is one of the latest releases of Microsoft, which helps to migrate your BizTalk solutions to Azure in a much simpler and automated way. So to keep you informed about the recent enhancements of the tool, the Azure Logic Apps team had a live remote session exclusively on that topic. Without any further delay, let us jump in as there are tons of updates are waiting.