I noticed with happiness yesterday that the Honeynet Project released Forensic Challenge 10. But unlike other challenges that focused on finding the right answers (hopefully including building some new tools), this one uses the data from FC5 but asks participants to create new visualizations of the attack.
This will present some interesting challenges, I think, since the data consist of system and server logs rather than network data per se. But I also think that these projects work best as a team effort, so I poked at Twitter and pulled together a few folks who’d like to get involved in a collaboration. (Anyone else who might have an interest in working with us, please let me know.) And maybe I’ll finally get some use out of that Visualizing Data book on my desk or even my old GraphViz scripts.


