@CroftyF1 Shouldnt Mercedes be fined as well when they decided to use the design that they previously gave/sold to RacingPoint? Surely some responsibility falls to them as bit teams using them what made it illegal. Speaking impartially. Thanks for a great show & team @SkySportsF1
@EricSkinner @Pfirstbrook @ianmcshane Agreed, XDR lets us step away from data sources and is an opportunity to focus on analyst outcomes. Alerts and Logs in SIEM lack context, N/EDR has context from that source but lacks the rest. Enter XDR that brings it all together for unknowns & SOAR to automate known ops process
@josh_zelonis Thats fair, but I think itll be hard to draw the line? If you add the Application context, what about Containers, PaaS, IaaS, IOT, etc... Might be a slippery slope. I think we should find the uber classifications, we chose Network, Endpoint and Cloud which is an option
@EricSkinner@josh_zelonis@maximweinstein Absolutely agree, also it's telemetry not logs which are parsed and lose context leaving the analyst searching for the lost context
Alternative communications planning and cybersecurity incident response - what to do if a data breach compromises corporate email servers https://t.co/1rFPxQb4XB
New wave of #cyberattacks targeting financial and information services in US and Middle East, uses a new multi-stage infection technique to deliver #FormBook#malware https://t.co/wlY9rYB518