CY613 - Cyber Data Analytics Resources
-
CERT NetSA Security Suite
Home and download page for Carnegie Mellon's CERT NetSA Security Suite. Includes download links for a number of projects under the NetSA umbrealla, including SiLK and YAF.
-
Splunk Free: Download
Download a free trial of the latest version of Splunk Enterprise. NOTE: Registration required. After the 30-day trial period ends, you must either purchase Splunk or continue under a free license with limited features.
-
Code Samples: Network Security Through Data Analysis, 2nd Edition
Repository set up by Michael Collins with Python code samples presented in the book.
-
Data.gov
Provided by the U.S. General Services Administration, the site contains thousands of free and publicly-available data sets in a variety of formats and domains. Browse by topic or search by keyword.
-
Regular Expressions 101
Online regular expression tool with helpful, token-by-token explanations of your test expressions and matches. Tests PCRE, Python, Javascript, Golang style expressions. Also includes a quick reference.
-
SecRepo - Security Data Samples
A repository maintained by Mike Sconzo, containing links to publicly-available security data sets. NOTE: Some links may be broken.
-
SiLK: Reference Data
Sample data sets provided by CERT to test SiLK's capabilities.
-
Install: SiLK on Ubuntu
Wiki-style tutorial that walks you through installing SiLK and YAF on an Ubuntu box. The instructions are a few years old, but should still work for the latest version of Ubuntu.
-
Install: SiLK on Ubuntu (Video)
Video tutorial that walks you through installing SiLK, YAF, and other NetSA tools on an Ubuntu box. The tutorial is a few years old, but should still work for the latest version of Ubuntu.
-
Splunk Search Tutorial
Official tutorial from Splunk introducing you to the software and its features: search, visualizations, and dashboards. Version 8.0.1.
-
Installing, Configuring, and Using Hyper-V in Windows 10
Tutorial that walks you through the process of creating a virtual machine using either Hyper-V Manager or PowerShell on Windows 10. Includes more detailed explanations than the MSDN article. Assumes you have not already installed Hyper-V.