Information Security, Logging, Intrusion Detection, Forensics
Areas of Expertise:
- Information Security
- Logging
- Log Management
- Intrusion Detection
- Computer Forensics
- Honeypots and Honeynet
- Security Data Analysis
- speaking
- training
- writing
Biography
Books
|
|
Blog
Anton Security Tip of the Week #16: Virtually There - Journey Into VMWare ESX Log Analysis
August 26 2008
Following the new "tradition" of posting a security tip of the week (mentioned here, here ; SANS jumped in as well), I decided to follow along and join the initiative. One of the bloggers called it "pay it forward" to... read morePoll #9 How Much Log Security Do You Need?
August 05 2008
My next logging poll is out - with it I set out to figure out the old mystery of mine, why people don't protect their log data (e.g. see this lamentation "Top 11 Reasons to Secure and Protect Your Logs")... read moreTime to Stop "Blaming the SysAdmin" or "Geekonomics"
June 20 2008
This rant/post comes due to my finishing the book "Geekonomics"(book site) - my earlier impressions here and here. The way the book ends, BTW, just kicks you in the balls, hard (look up what Mr Petrov did on Sept 26,... read moreAnton Logging Tip of the Week #15: Fear and Loathing in Event 560 (and 562 and 567)
May 08 2008
Following the new "tradition" of posting a security tip of the week (mentioned here, here ; SANS jumped in as well), I decided to follow along and join the initiative. One of the bloggers called it "pay it forward" to... read morePoll #8: What additional information is most useful for log analysis?
May 05 2008
So, my next poll is up - and it is fun: Which of the types of information are most useful when trying to make sense of a log entry? Vote here! Past polls: Poll #7 "What tools do you use... read moreAnton Security Tip of the Week #14: More access_log Fun: What Are You Not GETting?
March 12 2008
Following the tradition of posting a tip of the week (mentioned here, here ; SANS jumped in as well), I decided to follow along and join the initiative. One of the bloggers called it "pay it forward" to the... read morePoll #7: What tools do you use for Windows Event Log collection?
March 07 2008
My next fun logging poll is here - please vote! It is about tools for centralized collection of Windows Event Log from servers and other systems. One of the somewhat surprising discoveries from my previous poll was that few people... read moreTop 11 Reasons to Analyze Your Logs
March 05 2008
As promised, here is another "Top 11 Reasons" which is about log analysis. Don't just read your logs (definitely don't just collect them); analyze them. Why? Here are the reasons: Seen an obscure log message lately? Me too - in... read morePoll: What logs do you actually LOOK at?
March 05 2008
This is my 6th logging poll (vote here now!)- links to the previous five polls below. This one is deceptively similar to the #1 below, but it is not. This poll is What logs do you actually LOOK at? and... read morePoll: What are your top challenges with logs and logging?
January 21 2008
This poll is especially fun: What are your top challenges with logs and logging? Vote here. Past polls were: Poll #4 "Who looks at logs in your organization?" (analysis) Poll #3 "What Do You Do With Logs?" (analysis) Poll #2... read moreJanuary 10 2008
I just have to start with this quote from Rich Mogul: "... Legions of armchair futurists slobber over their keyboards, spilling obvious dribble that they either predict every year until it finally happens or is so nebulous that they claim... read moreTop Popular "Security Warrior" Blog Posts for 2007
January 07 2008
Even though these posts are from my main blog ( see "Security Warrior" blog) and not from this one, the top posts would still be of interest to my readers here. So, enjoy! These are my top popular "Security Warrior"... read morePoll: Who looks at logs in your organization?
December 19 2007
Here is my next poll about logs: Who looks at logs at your organization? Vote here! Also, my past polls and analysis are here. read moreNovember 29 2007
Following the new “tradition” of posting a security tip of the week (mentioned here, here ; SANS jumped in as well), I decided to follow along and join the initiative. One of the bloggers called it “pay it forward” to the community. So, Anton Security Tip of the Day #13: Into… read morePoll: What Do You Do With Collected Logs?
November 26 2007
Time for another fun logging poll: What Do You Do With Collected Logs? Vote here! This is my Logging Poll #3, links to past polls: Poll#2 “Why Collect Logs?” (vote here, results so far, my analysis) Poll #1 “Which Logs Do You Collect?” (vote here, results so far here, analysis here) read more
