160 likes | 171 Views
On the cheap side of Cybersecurity – via Open Source. Valentin NECOARA – PKI&Cybersecurity Director. Agenda. 1. Essential tools. 2. Open Source to the rescue. 3. Caveats. 4. Why consider using MSSP. Essential Tools. And the list can go on…. Perimeter and Network.
E N D
On the cheap side of Cybersecurity – via Open Source Valentin NECOARA – PKI&Cybersecurity Director
Agenda 1 Essential tools 2 Open Source to the rescue 3 Caveats 4 Why consider using MSSP
Essential Tools And the list can go on…
Perimeter and Network Main functions offered: And the most important: They are FREE.
Security Data Intelligence • A huge amount of data flows from network security, endpoints. A SIEM is the obvious choice but there are alternatives: • Most of these solutions have limitations or integration development requirements
Collaboration tools Tools to improve information dissemination and control: Open Atrium (collaboration suite) Redmine (project management) Request Tracker ( problem management) Wiki (information sharing) OSSIM (embedded ticket system)
Vulnerability Assessment Lots of tools for lots of vulnerabilities:
Penetration test tools • The offensive face of cybersecurity. Most common tools: • KALI Linux (previously backtrack). All In One offensive security Operating System. Packs a lot of opensource for penetration testing • Metasploit • Sqlmap • Zenmap (a nmap with GUI) • OWASP ZAP • Wireshark • w3af • Aircrack-NG(wireless) • and much much more...
Caveats No one to blame when something does not work as it should Source code vulnerabilities not exposed can lead to real live system vulnerabilities Some open source projects just “end”. Not very straightforward update/upgrade mechanisms. However, lately this began to change.
Questions ? valentin.necoara@certsign.ro +40729.889.781 csirt@certsign.ro