SEC595: Applied Data Science and AI/Machine Learning for Cybersecurity Professionals

Experience SANS training through course previews.
Learn MoreLet us help.
Contact usBecome a member for instant access to our free resources.
Sign UpWe're here to help.
Contact UsThere are several lessons to be drawn from the Code Red incident, and this paper will focus on those I believe are the most important. These include the following areas: the need for faster identification; the need for more coordinated analysis; the need for more clear and timely warnings; and, identifying the contributing factors. Similar to the Melissa Virus, some versions of the CR Worm will most likely continue to infect systems for some time. CR was just the beginning of the new types of problems we will have to face in the near future. CR illustrated how quickly a threat to the Internet can spread across the globe and how difficult it can be to halt. It is important that the lessons highlighted throughout this practical and from individuals' own experiences of this event, be used as another building block in an organization's overall defense-in-depth.