Strafer Tool Demo: Detecting Ransomware/Bot Infections in Elasticsearch

Aditya K Sood
Mar 14, 2021

At BlackHat Europe Arenal 2020, I released the Strafer tool to detect potential ransomware/bot infections in the Elasticsearch instances deployed in the cloud environments.

Elasticsearch Threat Landscape

You can download the slides here: https://github.com/adityaks/strafer/blob/main/presentation/strafer_tool_adityaks_rb_blackhat_europe_arsenal_2020.pdf

Tool Demonstration

See the tool demonstration in the video below:

Enjoy!

--

--