Splunk Tech Talks
Deep-dives for technical practitioners.

ML in Security: Suspiciously Named Processes

WhitneySink
Splunk Employee
Splunk Employee

Screenshot 2023-05-08 at 8.49.44 PM.png

Kumar Sharad, Sr. Threat Researcher, and Abhinav Mishra, Principal Applied Scientist, explain the motivation and goals for ML based detection in ESCU, highlighting the benefits of using pre-trained models over live-trained models. Then they dive into a specific example of how Splunk is using Deep Learning to detect suspiciously named processes and how to deploy it using the Splunk App for Data Science and Deep Learning (DSDL). Finally, they touch on how this comes together in ESCU and discuss additional resources.

Watch this tech talk to learn:

  • How to leverage Deep Learning models to detect suspiciously named processes
  • The design of a RNN based character-level model at the heart of the detection
  • How to use the pre-trained model via the DSDL app

Tech Talk part I:

Tech_talk_MLinSecurity_SuspiciouslyNamed Processes_1.mp4
Video Player is loading.
Current Time 0:00
Duration 0:00
Loaded: 0%
Stream Type LIVE
Remaining Time 0:00
 
1x
    • Chapters
    • descriptions off, selected
    • captions off, selected
      (view in My Videos)

      Tech Talk part II:

      Tech_talk_MLinSecurity_SuspiciouslyNamed Processes_2.mp4
      Video Player is loading.
      Current Time 0:00
      Duration 0:00
      Loaded: 0%
      Stream Type LIVE
      Remaining Time 0:00
       
      1x
        • Chapters
        • descriptions off, selected
        • captions off, selected
          (view in My Videos)

          Get Updates on the Splunk Community!

          Mastering Data Pipelines: Unlocking Value with Splunk

           In today's AI-driven world, organizations must balance the challenges of managing the explosion of data with ...

          The Latest Cisco Integrations With Splunk Platform!

          Join us for an exciting tech talk where we’ll explore the latest integrations in Cisco + Splunk! We’ve ...

          AI Adoption Hub Launch | Curated Resources to Get Started with AI in Splunk

          Hey Splunk Practitioners and AI Enthusiasts! It’s no secret (or surprise) that AI is at the forefront of ...