Threat hunting with Logstash

Thu, May 6, 2021, 4:00 PM (EDT)

In this talk we will see how to use Shodan and Logstash to hunt for threats. We will use the Shodan API to collect data. Then we’ll use a simple Python script to sift through the results and feed it to the ELK Stack. Once all of this is set up we can make simple dashboards for understanding the data from Shodan. The main point of this talk is to show how we can enrich and visualize data from Shodan.