Compromised enterprise devices detection based on abnormal behavior patterns– UEBA in action

Recently, many reports of incidents have been making headlines, proving that no business or industry is immune to advanced threat actors. Applying user and entity behavior analytics (UEBA) for the challenging task of the detection of compromised devices over time can play a critical role in enterprises’ defense mechanisms. Continue reading Compromised enterprise devices detection based on abnormal behavior patterns– UEBA in action

Using iptables to set up a killswitch for openvpn: DNS requests are blocked but they shouldn’t

I bought a subscription to a VPN service and I am using the openvpn 2.5.1 client to connect to it. I am using Ubuntu 20.10.
I now want to emulate the "kill switch" feature of most proprietary VPN client.
That is, I want to block … Continue reading Using iptables to set up a killswitch for openvpn: DNS requests are blocked but they shouldn’t