New article on the #PCAPS project just appeared online.

PCAPS is the WMO WWRP Polar Coupled Analysis and Prediction for Services project, and this is an easy reading overview of what we are trying to do.

Link here: (let me know if there are any paywall issues - should be open access)
https://journals.ametsoc.org/view/journals/bams/107/5/BAMS-D-24-0287.1.xml

@hackerworkspace ersatz moloch #pcaps

Help to provide evidence-based recommendations for improving Arctic, Antarctic and Southern Ocean environmental prediction and weather services from both scientific AND operational perspectives.

The #WMO World Weather Research Program (#WWRP) Polar Coupled Analysis and Prediction for Services (#PCAPS) project is interested in hearing from anyone with knowledge or expertise in working in or researching the Arctic, Antarctic or Southern Ocean regions.

This includes undertaking any form of field research, technical or logistical support activities, commercial work (e.g., in tourism or fisheries) as well as those involved in desk-based polar research, e.g., social and behavioural research, environmental modelling and prediction, or weather, ocean, ice and climate forecasting services and their provision.

If you are over 18 years old take part by completing a 10-minute online survey, which will ask for your perspectives about the challenges in, research needs for and societal outcomes of environmental prediction research, services and information use in the Polar Regions.

https://www.wwrp-pcaps.net/horizon-scan-2025

Horizon Scan 2025 โ€” PCAPS

Take the survey before 31st of May.

PCAPS

My talk from the S4x25 conference is up! I learned a bunch of lessons over the years from writing IDS rules (some good, some bad). A few lessons learned are in the talk, along with links to a github repo that contains pcaps, rules, and explanations of said rules, so that you can follow along at home:

https://www.youtube.com/watch?v=LYDk-tkM3eM

#pcaps #suricata #snort

Your IDS Rules For ICS Stink (and how to fix them)

YouTube

In an hour, Mr Peter Manev will be in our April Suricata Webinar sharing Where to find free and public malware pcaps for Suricata.

Finding good pcap sources? Awesome :D

There's still time to register and join:
https://us02web.zoom.us/webinar/register/WN_pxm1a0e2TcepAyGc8JZcyQ

#Suricata #Pcaps #FreeWebinar

Welcome! You are invited to join a webinar: Where to find free and public malware pcaps for Suricata. After registering, you will receive a confirmation email about joining the webinar.

In this session, Suricata long-time contributor and Stamus Networks' co-founder Peter Manev will show the ropes for finding resources of free and publicly available malware pcaps that one can use for many different purposes. For practical exercises, testing, tuning, showcasing, and more, having good pcaps is always important. When you are testing, when you try to differentiate between True Positive and False Positive, when you are trying to figure out and improve accuracy in a rule or if you need to improve that AI detection algorithm but want to throw in some real malware begaviour - you would definetly need some real malware pcaps. Watch this if you are a student, developer, threat analyst, Suricata integration enthusiast, or anyone who wants to learn about resources to have more and better network traffic samples to run your Suricata setup on. Peter is a co-founder of Stamus Networks, where he acts as CSO. He has been an active OISF member for a decade and has a 15-year-long record of activity in the field of IT security. An adamant admirer and explorer of innovative open-source security software, Peter is also the lead developer of SELKS.

Zoom
installing arkime on kali is v easy just apt install arkime but of course there is another matter of configuring....#pcaps #af pkts #syn ack #formerly moloch
Packet Tuesday - Large ICMP Errors

YouTube
Ever wondered how big ICMP errors can get? Well.. I got an answer for you in today's Packet Tuesday! https://youtube.com/watch?v=z9jk8Bbf4_oโ€ฆ #packetlife #pcaps #icmp #inpcapswetrust #packets #sec503
Packet Tuesday - Large ICMP Errors

YouTube
And yet another packet Tuesday. Sticking with IPv6 for this episode: Neighbor Discovery! https://www.youtube.com/watch?v=CoaZjuuY1do #ipv6 #packetlife #pcaps #inpcapswetrust #packettuesday
Packet Tuesday - IPv6 Neighbor Discovery

YouTube
Packet Tuesday - NTP

YouTube