Home
Talks
CFP Guide
What is BSides?
About
Contact
Light
← All talks
Tool
BSides talks featuring Elasticsearch
132
talks mention this tool across
50
BSides chapters.
Talks featuring Elasticsearch
1:47:36
Syslog-ng: Getting Started, Parsing Messages, Storing In Elasticsearch
Peter Czanik
BSides Luxembourg
· 2019
Technical
Intro
Workshop
Open →
2019-11
35:44
Sweet Security: Deploying a Defensive Raspberry Pi
Travis Smith
BSidesSF
· 2016
Technical
Demo
Open →
2016-04
46:44
Discover Analytic Gaps with Unfetter
Matt Davis
Shaun McCullough
BSides DC
· 2017
Technical
Blue
Talk
Open →
2017-10
32:07
Open Source Approach: The Next Best Thing in Cyber Incidence Management
Chris Ensey
BSides DC
· 2017
Talk
Open →
2017-10
22:54
Improve Your Network Security With Opensource IDS/IPS
Andreas Herz
BSides Munich
· 2017
Technical
Network Security
Tooling
Talk
Open →
2017-04
38:31
Logging Made Easy - Shane M and Adam B
BSides Bristol
Open →
2019-07
47:42
Threat Hunting with RockNSM
Bradford Dabbs
BSides KC
· 2018
Technical
Blue
Talk
Open →
2018-06
27:24
Make Alerts Great Again
Daniel Popescu
BSidesSF
· 2017
Technical
DevSecOps
Talk
Open →
2017-03
34:04
Automating Threat Hunting on the Dark Web
Apurv Singh Gautam
BSides Philly
· 2020
Technical
OSINT
Threat Intel
Technical Deep-dives
Talk
Open →
2020-12
33:40
Quick And Easy Forensic Timelines Via Sysmon, WEF, And ELK
Aaron Jewitt
BSides Munich
· 2019
Technical
DFIR
Detection Engineering
Blue
Talk
Open →
2019-03
23:14
Network Security: It Just Makes pfSense
Kyle Goode
BSides Knoxville
· 2026
Technical
Detection Engineering
Network Security
Talk
Open →
2025-01
33:39
A year in the wild: fighting malware at the corporate level
Kuba Sendor
BSidesSF
· 2016
Technical
Blue
Talk
Open →
2016-04
44:08
Scaling Detection And Response Teams: Enabling Efficient Investigations - James Dorgan
James Dorgan
BSides London
Technical
Talk
Open →
2024-02
19:40
BSides Rochester 2018 - IoT Botnet Detection System using Machine Learning
BSidesROC
Open →
2018-04
29:14
Alex Kirk - Incident response and threat hunting using Bro/Zeek data
Alex Kirk
BSides Augusta
· 2019
Technical
DFIR
Detection Engineering
Threat Intel
Intermediary
Blue
Case Studies and Incidents Analysis
Technical Deep-dives
+1
Open →
2019-10
32:29
Focus On Your Malware, Not Infrastructure! - Omri Segev Moyal
BSides Liverpool
Open →
2019-07
4:02:18
Bsides 2018 Track 2
BSides Vancouver
Open →
2018-03
27:48
Team Threat Hunting with AI and Automation
Kenneth Peeples
BSides Charleston
· 2024
Technical
AI Security
Container Security
Detection Engineering
Threat Intel
Talk
Open →
2024-11
41:49
Prioritising your security work using MITRE ATT&CK
Floris Ladan
BSides Tallinn
· 2022
Technical
Detection Engineering
Threat Intel
Threat Modeling
Intermediary
Blue
Talk
Open →
2022-10
30:06
Windows Event Forwarding and OSSEC — You can do this!
Robert Wilson
BSides Augusta
· 2018
Technical
DevSecOps
Blue
Talk
Open →
2018-11
24:25
BSidesMCR 2018: Adventures In WAF by Michael Thompson
BSides Manchester
Open →
2018-08
30:01
2017 - Repairing The Internet With Responsible Disclosures by Victor Gevers
BSides Manchester
Open →
2017-08
43:46
"OSINT'ing at Scale", Ben Menzies, CSides July 2020
Ben Menzies
BSides Canberra
· 2020
Talk
Open →
2020-07
58:14
Velociraptor: Digging Deeper
Michael Cohen
BSides Sydney
· 2019
Technical
DFIR
Threat Intel
Blue
Demo
Talk
Open →
2019-09
1:02:52
eBPF For Security Monitoring
James Ogden
BSides Leeds
· 2019
Technical
Detection Engineering
Malware Analysis
Network Security
Demo
Talk
Open →
2019-01
46:17
Let's Start Over!
Craig Chamberlain
BSides DC
· 2018
Technical
Demo
Open →
2018-11
23:19
Pwning all the Internet of things for fun and profit
Ben Hughes
BSides Toronto
· 2014
Technical
Talk
Open →
2014-12
43:28
2015 - Kuba Sendor - Squashing Rotten Apples Automated forensics & analysis for Mac OS X..
BSides Manchester
Open →
2015-09
37:08
BSidesSF 2022 - Practical Threat Hunting With Machine Learning (Omid Mirzaei)
Omid Mirzaei
BSidesSF
· 2022
Technical
Case Studies and Incidents Analysis
Technical Deep-dives
Talk
Open →
2022-07
46:44
BSIDES CPT 2019 - Natural Language Processing & Anomaly detection in Sys call logs - Christo Goosen
BSides Cape Town
Open →
2019-12
59:25
Phoenix: The Open Source malware analysis appliance
Justin Borland
Greg Olmstead
BSides Augusta
· 2019
Technical
Tooling
Talk
Open →
2019-10
18:51
Fighting Email Phishing with a Custom Cloud IDS
Dan Borges
BSidesSF
· 2017
Technical
Blue
Talk
Open →
2017-03
13:17
Automated Dorking for Fun and Pr^wSalary - Filip Reesalu
BSides Las Vegas
Open →
2016-08
24:41
Got popcorn? What's on the Vuln Channel tonight?
Rob Jerdonek
Lily Chau
BSidesSF
· 2022
Technical
Talk
Open →
2022-07
42:06
Mark Baggett - Free tools for your threat hunting toolbox
Mark Baggett
BSides Augusta
· 2021
Tooling
Talk
Open →
2021-10
35:42
Connecting the Dots: Building a Data-Dump Search Engine
Arron Finnon
BSides London
Technical
Talk
Open →
2017-06
24:37
Androzoo APK Search: A Search Service Of Meta-Data
Médéric Hurier
BSides Luxembourg
· 2018
Research
Talk
Open →
2018-10
20:06
ELK: Not P.O.S.
Jason Kendall
BSides Toronto
· 2014
Technical
Talk
Open →
2014-12
25:44
DNS Hardening - Proactive Net Sec Using F5 iRules and Open Source Analysis Tools - Jim Nitterauer
BSides Las Vegas
Open →
2016-08
16:39
Regipy: Automating registry forensics with python
Martin G. Korman
BSides TLV
· 2020
Technical
Talk
Open →
2020-07
41:46
DIY Patch Management
Florian Junge
Ingo Bente
BSides Munich
Technical
DevSecOps
Vulnerability Research
Talk
Open →
2018-04
34:56
Let's Talk About the AI Apocalypse
Dylan Ayrey
BSidesSF
· 2025
Technical
Talk
Open →
2025-06
22:38
Hacking OSS
Rotem Bar
BSides TLV
· 2021
Technical
Red
Talk
Open →
2021-08
57:51
Will Schroeder & Max Harley - Meet Your Nemesis: Fighting Data With Data
Will Schroeder
Max Harley
BSides Augusta
· 2023
Technical
DFIR
Threat Intel
Advanced
Red
Talk
Open →
2023-10
22:10
Code C.A.I.N – Keeping Your Source Code Under Control
Rotem Reiss
BSides TLV
· 2022
Technical
Detection Engineering
OSINT
Supply Chain Security
Talk
Open →
2022-07
48:43
Applying Data Science to Identify Malicious Actors in Enterprise Logs
Balaji Balakrishnan
BSides DC
· 2016
Technical
Detection Engineering
Malware Analysis
Threat Intel
Blue
Talk
Open →
2016-10
29:07
SOC Analyst's Arsenal: Essential Tools, Tips & Tricks For Effective Investigations
Samuel Kavaler
BSides Munich
· 2023
Technical
DFIR
Detection Engineering
Tooling
Intermediary
Blue
Talk
Open →
2023-10
25:14
Securing Fast and Furious DevOps Pipelines
Abdessamad Temmar
BSides Las Vegas
· 2019
Technical
DevSecOps
Supply Chain Security
Blue
Talk
Open →
2019-10
32:36
Unified Protection with The Elastic Stack
James Spiteri
BSides Athens
· 2020
Technical
Blue
Talk
Open →
2020-06
42:19
Every Contact Leaves A Trace by Ken Westin
Ken Westin
BSides Dublin
Talk
Open →
2023-07
45:43
Logs don't lie, even if most of them are lost in L7 DDoS
Peeter Marvet
BSides Tallinn
· 2022
Technical
Talk
Open →
2022-10
35:06
A Serverless SIEM: Detecting All Baddies
Chen Cao
Daniel Stinson-Diess
BSides Las Vegas
· 2021
Technical
Cloud IAM
Detection Engineering
Blue
Talk
Open →
2021-08
19:25
Paravirtualized Honeypot Deployment for the Analysis of Malicious Activity
Andronikos Kyriakou
BSides Athens
· 2018
Technical
Malware Analysis
Threat Intel
Blue
Talk
Open →
2018-08
28:51
Immunizing vulnerable web applications with AppArmor
György Demarcsek
BSides Luxembourg
· 2017
Technical
Web AppSec
Talk
Open →
2017-10
31:20
Getting Better with Data - Steph Locke
Steph Locke
BSides London
· 2016
Technical
Talk
Open →
2016-07
38:33
NoSQL Means No Security?
Philipp Krenn
BSides Munich
· 2017
Technical
Vulnerability Research
Web AppSec
Red
Talk
Open →
2017-04
28:37
SMBeagle: SMB Share Hunter
Daniel Oates-Lee
BSides Cheltenham
· 2022
Talk
Open →
2022-07
53:42
PlagueScanner: An Open Source Multiple AV Scanner Framework
Robert Simmons
BSides SLC
· 2015
Technical
Tooling
Detection Engineering
Malware Analysis
Intermediary
Blue
Demo
Talk
Open →
2015-04
45:21
Leveraging LLMs for Advanced AI Applications
Satyanand Kale
BSides Athens
· 2024
Technical
AI Security
Talk
Open →
2024-06
23:18
Building a Practical AI Assistant for Security Operations
Vincent Ruijter
BSides Lisbon
· 2025
Technical
AI Security
Detection Engineering
Intermediary
Talk
Open →
2026-01
51:44
Zero Trust — Attack and Defend
Aaron Jewitt
BSides Frankfurt
· 2024
Technical
Cloud IAM
Detection Engineering
Purple
Talk
Open →
2025-05
42:50
Where's Wally? Hands-On Thread Hunting In Elasticsearch Using EE-Outliers
Daan Raman
BSides Luxembourg
· 2019
Technical
Demo
Talk
Open →
2019-11
29:11
Malware Code Similarity Through Vector Search
Remco Sprooten
BSides Belfast
· 2025
Research
Technical
Malware Analysis
Reverse Engineering
Technical Deep-dives
Talk
Open →
2025-02
21:35
Full Packet Capture for the Masses
Xavier Mertens
BSides Athens
· 2018
Technical
Blue
Talk
Open →
2018-08
53:48
CG - Hadoop Safari : Hunting For Vulnerabilities - Mahdi Braik & Thomas Debize
BSides Las Vegas
Open →
2017-08
52:00
Applied Machine Learning in Cyber Security
Saw Winn Naung
Aung Myint Myat
BSides Myanmar
· 2023
Technical
Talk
Open →
2023-04
24:33
Testing Defensive Controls w/ atomic-operator - Josh Rickard
Josh Rickard
BSides KC
· 2022
Technical
DevSecOps
Blue
Talk
Open →
2022-10
44:07
Build Yourself an Elastic Threat Hunting and Monitoring SIEM
Ronnie Watson
BSides Huntsville
· 2021
Technical
Talk
Open →
2021-02
3:20:23
Live BSides Amsterdam 2025 - Tech Track
BSides Amsterdam
· 2025
Technical
Detection Engineering
Malware Analysis
Talk
Open →
2025-11
32:30
Building a Secure Environment for Operations Using Docker
Brian Stucker
BSides Augusta
· 2017
Technical
DevSecOps
Demo
Talk
Open →
2017-09
29:48
Domain Takeovers For Fun And Profit
Daniel Oates-Lee
BSides Lancashire
· 2023
Technical
DNS Security
DevSecOps
Web AppSec
Intermediary
Red
Demo
Talk
Open →
2023-04
45:08
Unmasking Data Leaks: A Guide to Finding, Fixing, and Prevention
Jordan Wright
BSides SATX
· 2019
Technical
Cloud IAM
Demo
Talk
Open →
2019-09
40:52
Matija Kos | Hackers Don’t Hack, They Log In: The Threat of Stolen Credentials
Matija Kos
BSides Zagreb
Technical
Detection Engineering
Malware Analysis
Threat Intel
Talk
Open →
2025-03
34:37
What You Most Likely Did Not Know About Sudo - Peter Czanik
Peter Czanik
BSides Luxembourg
· 2019
Technical
Talk
Open →
2019-11
50:30
Blackbox Containers: Container Security in the Enterprise
Kenny Parsons
BSides Charm
· 2023
Technical
Container Security
DevSecOps
Supply Chain Security
Intermediary
Talk
Open →
2023-06
44:36
Dale Lakes - Home Defense for an IoT Infested World
Dale Lakes
BSides Augusta
· 2019
Talk
Open →
2019-10
34:03
Sudo For Defense: How Can New/Lesser-Known Features Help You?
Péter Czanik
BSides Budabest
· 2021
Technical
Talk
Open →
2021-05
32:02
Security Tradeoffs In Elasticsearch - Philipp Krenn
Philipp Krenn
BSides Luxembourg
· 2019
Technical
Intermediary
Talk
Open →
2019-11
40:39
Wes Lambert - Endpoint Excavation: Digging Through Host Artifacts with Velociraptor
Wes Lambert
BSides Augusta
· 2021
Technical
Blue
Talk
Open →
2021-10
19:24
NoSQL Means No Security?
Philipp Krenn
BSides Athens
· 2020
Technical
Demo
Talk
Open →
2020-06
59:18
BSidesAugusta 2018 - Martin Holste - An Anatomy Of A Cloud Hack
BSides Augusta
Open →
2018-11
51:41
Security at Speed: Securing Code in your DevOps Pipeline
Daniel Byrnside
BSides Charleston
· 2019
Technical
DevSecOps
Talk
Open →
2019-11
33:03
Matt Jones - Trumping Musky Infosec Noise with Talkback sh
Matt Jones
BSides Perth
· 2025
Talk
Open →
2025-10
25:48
From Noise To Insight: Supercharge Your SOC With Automated Alert Correlation
Anicet Fopa Tchoffo
BSides Leeds
Technical
Talk
Open →
2024-07
23:10
Next Level SOC Automation You Never Thought Of
John Gillis
BSides SLC
· 2022
Technical
Talk
Open →
2023-01
38:42
Threat Hunting in Kubernetes
Mutaz Alsallal
BSides Budabest
· 2020
Technical
Talk
Open →
2021-01
50:53
Hack in Your Sleep
David Hunt
BSides Huntsville
· 2021
Technical
Red
Talk
Open →
2021-02
33:09
Fe-fi-fo-FIM, I Smell The Monitoring Of An Elastic Stack!
Brett Calderbank
BSides Manchester
· 2019
Technical
Detection Engineering
GRC
Talk
Open →
2019-09
13:55
Everybody Loves TAXII by Alexander Darby
Alexander Darby
BSides London
Talk
Open →
2023-05
59:48
DCO and Data Science: Best Friends Forever
BSides Augusta
· 2022
Technical
Blue
Demo
Talk
Open →
2022-10
32:20
Secure(r) Cloud Development
Christo Goosen
Toufeeq Ockards
BSides Cape Town
· 2017
Technical
Cloud IAM
Detection Engineering
DevSecOps
Talk
Open →
2017-12
11:45:07
Waging War on an Entire City
Andrew Morris
BSides Charleston
· 2013
Talk
Open →
2014-11
35:13
Hunting from APT to *QL Queries: From approach to tool
Eddy Mota
Edu Vivi
BSides São Paulo
· 2025
Technical
Detection Engineering
Threat Intel
Threat Modeling
Blue
Demo
Talk
Open →
2025-06
31:24
BSidesSF 2025 - Resilience in the Uncharted AI Landscape (Ranita Bhattacharyya)
Ranita Bhattacharyya
BSidesSF
· 2025
Talk
Open →
2025-06
33:44
Stop Paying for Domain Feeds: Build Your Own Threat Intel
Stephen Doyle
BSides Belfast
· 2025
Technical
OSINT
Threat Intel
Tooling
Talk
Open →
2025-12
52:37
Building the Panopticon: Centralized Logging and Alerting With Free Tools
Matthew Gracie
BSidesROC
· 2018
Technical
Blue
Talk
Open →
2018-04
54:48
A pain in the SaaS: Scalable Detection in the Age of Data Sprawl
Alan Braithwaite
BSides Seattle
Technical
Talk
Open →
2025-06
19:01
Building a Security Audit Logging System on a Shoestring Budget
George Wang
BSides Las Vegas
Technical
Detection Engineering
DevSecOps
Talk
Open →
2024-09
43:50
Considering Cloud Coverage in SIEM/XDR Design
Chris Beckman
BSides SLC
· 2025
Technical
Cloud IAM
Detection Engineering
Threat Modeling
Blue
Talk
Open →
2025-06
51:54
Wes Lambert - Augmenting the (Security) Onion: Facilitating Enhanced Detection and Response
Wes Lambert
BSides Augusta
Technical
DFIR
Detection Engineering
Threat Intel
Blue
Talk
Open →
2019-10
51:33
DIY Cyber Threat Intelligence
Mark Hahn
Thomas Hahn
BSides Seattle
· 2025
Technical
Cloud IAM
DevSecOps
Threat Intel
Demo
Open →
2025-06
1:00:02
Hunting Threats like a Cybersecurity Ninjas
Roberto Martínez
BSides Colombia
Technical
Detection Engineering
Threat Intel
Threat Modeling
Blue
Talk
Open →
2025-04
56:23
Blue teaming Incident Response for the Win
Roy Wattanasin
Bsides CT
· 2019
Technical
Blue
Talk
Open →
2019-11
21:39
Show Me The Honey: Creating Elasticsearch Honeypots Powered By LLMs
Claire Dickson
BSides Belfast
· 2025
Research
Technical
AI Security
Detection Engineering
Threat Intel
Talk
Open →
2025-12
43:26
BSidesSF 2015 - OSXCollector: Forensic Collection and Automated Analysis for OS X (Ivan Leichtling)
Ivan Leichtling
BSidesSF
· 2015
Technical
Blue
Talk
Open →
2023-12
17:55
Vector Search for Security Operations Centers: Yay or Nay?
Filip Žagar
BSides Zagreb
· 2025
Technical
Detection Engineering
Threat Intel
Talk
Open →
2025-03
45:50
Threats Versus Capabilities: Building Better Detect and Respond Capabilities
Thomas Fischer
BSides Dublin
· 2022
Technical
Detection Engineering
Threat Intel
Blue
Talk
Open →
2022-05
26:13
The Role of Data Visualization in Improving Machine Learning Models
Phil Roth
BSides Las Vegas
· 2017
Technical
Malware Analysis
Talk
Open →
2017-08
30:54
BSidesBoulder 2023 - Ryan Thompson - Ecosystem of Insights Building Operation Dashboards That Enable
Ryan Thompson
BSides Boulder
· 2023
Technical
Detection Engineering
Tooling
Talk
Open →
2024-02
44:23
My Cyber Sense Is Tingling! Detection Engineering With Free Tools
Matthew Gracie
BSides SATX
· 2025
Technical
Talk
Open →
2025-09
38:05
Log4Shell If You Don't Know Any Java
Philipp Krenn
BSides Cheltenham
· 2022
Technical
Vulnerability Research
Web AppSec
Intro
Talk
Open →
2022-07
48:30
Breaking NBAD and UEBA Detection
Charles Herring
BSides NoVa
· 2021
Technical
Detection Engineering
Threat Intel
Advanced
Red
Technical Deep-dives
Talk
Open →
2021-07
43:43
Building a Sawmill: Processing Logs with Security Onion
Matthew Gracie
BSides Peru
· 2024
Technical
DFIR
Detection Engineering
Threat Intel
Blue
Demo
Talk
Open →
2024-08
32:12
One Stop Anomaly Shop
Vivek Malik
Kumar Vikramjeet
BSides Budabest
· 2021
Technical
Demo
Talk
Open →
2022-03
46:50
Threat Hunting: Defining the Process While Circumventing Corporate Obstacles
BSides Philly
· 2018
Technical
Blue
Talk
Open →
2018-11
43:52
JOINing Across the Stack: Structured Security Analytics for the Modern Attack Surface
Eric Kaiser
BSides Las Vegas
· 2021
Technical
Cloud IAM
Container Security
Detection Engineering
Blue
Talk
Open →
2021-08
22:57
Log Management and Log Aggregation
Gared Seats
BSides KC
· 2017
Technical
Talk
Open →
2017-07
22:00
Security Tradeoffs in Elasticsearch
Philipp Krenn
BSides Budabest
· 2020
Technical
Talk
Open →
2021-01
28:34
Michael Banks - You TOO can defend against MILLIONS of cyber attacks
BSides Augusta
Open →
2016-09
37:20
Yeet the Leet with Osquery
Sebastiaan Provost
BSides Newcastle
· 2021
Technical
Detection Engineering
Malware Analysis
Threat Intel
Talk
Open →
2021-10
25:03
Forensics: We're Not Just Byte-Sized
Ben Hodson
BSides Basingstoke
· 2025
Technical
Talk
Open →
2025-09
24:07
What the deuce: Strategies for splitting your alerts
John T. Myers
BSides Philly
Technical
Talk
Open →
2017-08
36:41
Lessons Learned from Building & Running MHN, a Crowd-sourced Honeynet
Jason Trost
BSidesSF
· 2015
Research
Case Studies and Incidents Analysis
Empirical Research
Talk
Open →
2023-12
43:34
Pwning Slack with PowerShell
Carrie Roberts
Tony Hamburger
BSides Boise
· 2020
Technical
Red
Demo
Talk
Open →
2020-01
36:04
Automating Detection And Response With Tines - Cameron Higgs & Pat Meehan
Cameron Higgs
Pat Meehan
BSides Bristol
· 2025
Technical
Talk
Open →
2025-01
52:44
The Contemplator Approach: A Tale of Data Enrichment
Rodrigo Brenes
Pedro Rodriguez
BSides Las Vegas
· 2019
Technical
Talk
Open →
2019-10
14:20
GT - Advancing Internet Security Research with Big Data and Graph Databases - Andrew Hess
BSides Las Vegas
Open →
2016-12
26:49
Indexing the Chaos: Extract PII from Ransomware Leaks
Juanma
BSides Las Vegas
Technical
Talk
Open →
2025-12
42:40
The Declarative Future
Liam Randall
BSides Charm
Technical
Container Security
Detection Engineering
Web AppSec
Keynote
Open →
2021-05
12:51
Life's a Breach: Modern Data Breach Reporting with Sencode Breaches
Gareth Kerr
BSides Newcastle
· 2020
Research
Tooling
Talk
Open →
2020-11
36:00
Introducing LMDA: Enhancing Lateral Movement and Data Access Identification on Windows Systems
Kostya Ilioukevitch
Phalgun Kulkarni
BSides Edmonton
· 2025
Technical
Talk
Open →
2025-10
25:39
Current State of Virtualizing Network Monitoring
Ed Sealing
Daniel Lohin
BSides Charm
· 2017
Technical
Detection Engineering
Network Security
Case Studies and Incidents Analysis
Technical Deep-dives
Talk
Open →
2021-05