SANS Institute - SiLK

From GCA ACT
Revision as of 09:46, 27 October 2023 by Globalcyberalliance (talk | contribs) (Created via script)
(diff) ← Older revision | Latest revision (diff) | Newer revision → (diff)
Jump to navigationJump to search

Description


SiLK is a toolkit for collecting, storing, and analyzing network flow data. Flow data includes information about the source and destination of traffic, the port numbers used, the amount of data Transferred, and other metadata. This data can be used to troubleshoot network security issues, locate Denial-of-service attacks, and identify potential malicious activity.

The SiLK toolkit is made up of several components:

The flowcap tool is used to

More Information


https://tools.netsa.cert.org/silk/