During an incident, an EDR system detects an increase in the number of encrypted outbound connections from multiple hosts. A firewall is also reporting an increase in outbound connections that use random high ports. An analyst plans to review the correlated logs to find the source of the incident. Which of the following tools will best assist the analyst?
ApplebeesWaiter1122
Highly Voted 1 year, 11 months agops1hacker
Highly Voted 1 year, 2 months agoMortG7
Most Recent 1 year, 5 months agotouisuzuki
1 year, 9 months agojade33
1 year, 10 months ago