1. This site uses cookies. By continuing to use this site, you are agreeing to our use of cookies. Learn More.

DomainTools' Iris interface speeds up cybercrime investigations

Discussion in 'Network World' started by RSS, Sep 15, 2015.

  1. RSS

    RSS New Member Member

    Cybercriminals often leave a lot of digital crumbs, and when organizations get attacked, finding those clues can help reveal who is attacking and why.

    For 15 years, a small company called DomainTools, based in Seattle, has collected vast amounts of information about the Web: historical domain name registrations and network information, all of which are extremely valuable in investigating cyberattacks.

    Using its tools makes it possible, for example, to see what other websites are using a particular IP address, what email address was used to register them, DNS servers and other information.

    But DomainTools' Web-based interface wasn't designed in a way that reflected the workflows that investigators follow when probing cyberattacks and the speed at which they need to collate large amounts of information.

    To read this article in full or to leave a comment, please click here

    Continue reading...
     

Share This Page