cisagov / Malcolm

Malcolm is a powerful, easily deployable network traffic analysis tool suite for full packet capture artifacts (PCAP files), Zeek logs and Suricata alerts.
https://cisagov.github.io/Malcolm/
Other
1.96k stars 328 forks source link

Notices and Signatures #426

Open mmguero opened 1 week ago

mmguero commented 1 week ago

@mmguero cloned issue idaholab/Malcolm#371 on 2024-01-15:

For what topic would you like to see training developed?

Go over how to review Notices, CVEs, triggered signatures, etc. in Malcolm (probably via dashboards)

What format would be best suited for this training?

A video