Threat hunting platforms

As we mentioned earlier in this chapter, threat hunting platforms are used to gather cyber threat intelligence and generate threat analysis reports. One of the most popular platforms used is called Maltego. According to Kali tools, "Maltego's unique advantage is to determine the complexity and severity of single points of failure as well as trust relationships that exist currently within the scope of your infrastructure." Maltego uses a graphical interface to display information quickly and accurately. Using this platform makes it possible to detect hidden connections on a network. Maltego is considered a powerful and dynamic threat hunting platform allowing many customizable options. This allows Maltego to be adapted to many different network environments and configurations. This platform is built into Kali Linux and is a popular choice among pen testers practicing offensive security:

Interface of Maltego

Another popular threat hunting platform used is called Sqrrl. This platform is designed for enterprise threat-hunting. Unique features of Sqrrl include the hunting loop, the hunting maturity model, a comprehensive search language, asset tagging, and investigation recording. The Sqrrl platform combines incident investigations, proactive threat hunting, and automated analytics to provide maximum network protection. Next, we will talk about how the Pineapple can be used for offensive security pen testing.

..................Content has been hidden....................

You can't read the all page of ebook, please click here login for view all page.
Reset
18.116.14.118