As law enforcement organizations benefit from readily available online information and databases, they also face the challenge of combing through vast amounts of information, often housed in siloed systems and databases. Across the US, law enforcement teams in state and local government are turning to solutions such as Elastic to save time and improve accuracy as they use data … [Read more...] about How the third-largest US county uses Elastic to accelerate investigations
Investigations
How to Use MPLogs for Forensic Investigations
In an incident response investigation, CrowdStrike analysts use multiple data points to parse the facts of who, what, when and how. As part of that fact-finding mission, analysts investigating Windows systems leverage the Microsoft Protection Log (MPLog), a forensic artifact on Windows operating systems that offers a wealth of data to support forensic investigations. MPLog has … [Read more...] about How to Use MPLogs for Forensic Investigations
How to Speed Investigations with Falcon Forensics
Introduction Threat hunters and incident responders are under tremendous time pressure to investigate breaches and incidents. While they are collecting and sorting massive quantities of forensic data, fast response is critical to help limit any damage inflected by the adversary. This article and video will provide an overview of Falcon Forensics, and how it streamlines the … [Read more...] about How to Speed Investigations with Falcon Forensics
New York, Canada, Ireland Launch New Investigations Into Facebook Privacy Breaches
Facebook has a lot of problems, then there are a lot of problems for Facebook—and both are not going to end anytime sooner.Though Facebook has already set aside $5 billion from its revenue to cover a possible fine the company is expecting as a result of an FTC investigation over privacy violations, it seems to be just first installment of what Facebook has to pay for … [Read more...] about New York, Canada, Ireland Launch New Investigations Into Facebook Privacy Breaches