TY - BOOK AU - Sanders,Chris AU - Smith,Jason TI - Applied network security monitoring: collection, detection, and analysis SN - 9780124172081 U1 - 005.8 PY - 2014/// CY - USA PB - Elsevier KW - Computer security KW - Computer networks KW - Open source intelligence N1 - Includes bibliographical references and index; Machine generated contents note: Introduction to NSM Driving Data Collection The Sensor Platform Full Packet Capture Data Session Data Protocol Metadata Statistical Data Indicators of Compromise Target-Based Detection Signature-Based Detection with Snort Signature-Based Detection with Suricata Anomaly-Based Detection with Bro Early Warning AS&W with Honeypots Packet Analysis Friendly Intelligence Hostile Intelligence Differential Diagnosis of NSM Events Incident Morbidity and Mortality Malware Analysis for NSM ER -