Updated Black-list Correlation
by Ron Gula on December 28, 2006
Tenable's research group has recently expanded support for "Black Lists" within the Log Correlation Engine. These new features include enhanced log parsing to identify specific black-list sources as well as leveraging these lists into the "Crowd Surge" detection TASL script.
Why Correlate With Black Lists?