TY - BOOK AU - Sanders,Chris AU - Smith,Jason TI - Applied network security monitoring: collection, detection, and analysis SN - 9780124172081 (paperback) AV - QA76.9.A25 .S268 2014 U1 - 005.8 2 3 PY - 2014///] CY - Amsterdam, Boston PB - Syngress, an imprint of Elsevier KW - Computer security KW - Computer networks KW - Security measures KW - Open source intelligence N1 - Includes bibliographical references and index; Machine generated contents note: Introduction to NSM Driving Data Collection The Sensor Platform Full Packet Capture Data Session Data Protocol Metadata Statistical Data Indicators of Compromise Target-Based Detection Signature-Based Detection with Snort Signature-Based Detection with Suricata Anomaly-Based Detection with Bro Early Warning AS&W with Honeypots Packet Analysis Friendly Intelligence Hostile Intelligence Differential Diagnosis of NSM Events Incident Morbidity and Mortality Malware Analysis for NSM ER -