SPLUNKING THE MODERN HONEY NETWORK: COMMUNITY DATA (PART 4)

Over the last 3 weeks, I’ve looked at: ingesting Modern Honey Network data into Splunk, adding context to MHN data using threat feeds, and creating alerts using MHN data.

In this post I am going to give you a brief insight into the data that was reported back from the MHN honeypots in January 2017.

About MHN Community Data

The MHN Server reports anonymised attack data back to a central Anomali datastore. You can control what data from your honeypots is shared. After some analysis we also incorporate some MHN Community data into a threat feed in our Anomali Threatstream platform. source

Show your support

Clapping shows how much you appreciated jackdennis’s story.