Docs
Advanced attack detection using OSSIM - Insecure Magazine 25 – 2010/04
SIEM for ITIL Incident Response – Part 1 - Alienvault Labs - November 2011
SIEM for ITIL Incident Response – Part 2 - Alienvault Labs – December 2011
WTF is happening inside my Android Phone - Rootedcon 2011/04
Fighting Advanced Persistent Threats APT with Open Source Tools - Rootedcon 2010/04
Improve attack detection by combining Open Source Security Tools - BsidesSF 2010/03 (Companion text to the slides here)
How can OSSIM help you with your PCI DSS Wireless requirements?
Pre-Labs blog tutorials:
- Tutorial 8: OSSIM + JAsperServer + iReport Tutorial
- Tutorial 7: Feature highlight / pre-tutorial on Risk Maps
- Tutorial 6: Plugin writing primer
- Tutorial 5: Windows event logging
- Tutorial 4: Correlation engine primer
- Tutorial 3: First recommended steps after installation
- Tutorial 2: Syslog data mining with attached md5sum. AKA “Store 100% of data”.
- Tutorial 1: Host Inventory using OSSIM
- Using Cisco SDEE Protocol to collect security events



