The talk is about the SecOps - Incident Response and Forensics Workflows, Where we are using python for automation stuff.
- SOAR Use Cases (5)
- API Integrations
- DEMOS
- Email Beaconing (Advanced setup)
- Public Interaction
15. !15
Exfiltration - Detection
• Curious about MTA Agents ?
• Is Ingress/Outgress Email Traffic monitor in Firewall ?
• What about free mail providers/disposable email providers ?
• Track how many partners/clients are using free email services ?
• Gist: https://gist.github.com/P3t3rp4rk3r/bc707cebaeb306aba3e8e9a9597aa658
16. !16
Email Beaconing - (Next Level) - Python
• What is Beaconing ?
pip install python-guerrillamail