Security Onion 🧅​ · @securityonion
1186 followers · 92 posts · Server infosec.exchange

2.3.220 now available including:

8.6.2
9.2.10
4.27.1
5.0.7

and more!

blog.securityonion.net/2023/02

Looking for a fun project? 😀

Want to practice your 🔍 and skills?

Install 🧅2.3.220 in a VM:
docs.securityonion.net/en/2.3/

Then follow along with our recent quick analysis blog posts:
blog.securityonion.net/search/

You can then stand up a production deployment and sniff live traffic from a tap or span port. You'll get NIDS alerts, protocol metadata, and full packet capture!
docs.securityonion.net/en/2.3/

Then augment that network visibility with host visibility by deploying endpoint agents:
docs.securityonion.net/en/2.3/

Once you find something of interest in your network or endpoint logs, you can escalate to a case:
docs.securityonion.net/en/2.3/

Inside the case, you can identify indicators and analyze them using Analyzers:
docs.securityonion.net/en/2.3/

Looking for more documentation?

It's built into our web interface for 2.3.220 but you can also find it online at:
securityonion.net/docs

You can also purchase a printed copy of the documentation at securityonion.net/book with proceeds going to Rural Technology Fund!

The printed book also includes an inspiring foreword by @taosecurity and a 20% discount code for our certification and on-demand training!

#securityonion #elastic #grafana #fleetdm #zeek #cybersecurity #threathunting #incidentresponse #malware

Last updated 3 years ago