IDSTower

Why you should use Suricata IDS to alert on IOCs

Summary In this post, I will explain why you should utilize Suricata IDS to alert on Network-Based Indicators of Compromise (IOCs), what are the traditional approach and its limitations, How Suricata will differ & what advantages you will get. Introduction Traditionally, SOC Operators used network Indicators of Compromise (IOCs) (eg: domains, IP…etc.) to detect malicious

Why you should use Suricata IDS to alert on IOCs Read More »