-
Research
and PublicationsStay -
Conferences
and EventsAnnual Conference
October 15–18, 2013
Save the date!Events for all Levels and Interests
Whether you're looking for a conference to attend face-to-face to connect with peers, or for an online event for team professional development, see what's upcoming.
Stay -
Career
DevelopmentEDUCAUSE Institute
Leadership/Management Programs
Explore MoreCareer Center
Leadership and Management Programs
EDUCAUSE Institute
Advanced Programs
Project Management
Jump Start Your Career Growth
Explore EDUCAUSE professional development opportunities that match your career aspirations and desired level of time investment through our interactive online guide.
Stay -
Focus Areas
and InitiativesLatest Topics
EDUCAUSE organizes its efforts around three IT Focus Areas
Join These Programs If Your Focus Is
Stay -
Connect
and ContributeFind Others
Get on the Higher Ed IT Map
Employees of EDUCAUSE member institutions and organizations are invited to create individual profiles.
Stay -
About
EDUCAUSEUncommon Thinking for the Common Good™
EDUCAUSE is the foremost community of higher education IT leaders and professionals.
Stay
2012: p0wnage & Detections
Tuesday
Apr 16th, 2013
11:30 AM - 12:15 PM
Central Time
Salon A
Change Timezone
TIMEZONE
View this schedule in your local timezone (Eastern Time) or select a different location:
Session Type: Concurrent Session
We will present an in-depth analysis of several security incidents from 2012 to showcase the intrusion detection and incident response techniques used at Berkeley Lab, highlighting how our security monitors clearly flagged some compromises while examining why others were missed. We'll also highlight the interesting consequences of detection techniques that result in finding malicious but occasional events and discuss how the analysis we conducted on these incidents provides a basis for attack modeling and the design of new methods for security monitoring and response.
















