Advertisement · 728 × 90
#
Hashtag
#Suricon2025
Advertisement · 728 × 90
Post image

#SuriCon2025 was unforgettable! With an impressive amount of talk submissions we received this year and support from our sponsors, the conference was filled with engaging research, talks and discussions. Check out our talk library to learn more! suricon.net/suricon-2025...

#Suricata

1 0 0 1
Post image

We’re still reeling over #SuriCon2025! We want to thank all the attendees, sponsors, our crew & internal team for making SuriCon what it is. It was an insightful three days in Montreal & we’re looking forward to #SuriCon2026!

Learn more: suricon.net

#Suricata

2 0 0 1
Post image

We’re still reeling from last week, #SuriCon2025! We could not have done it without our sponsors. We’re thankful for each and every one of you for your constant support and love of this community.

A big thank you from our team goes out to you all. 🧡

#Suricata #SuriCon

2 0 0 0
Post image Post image Post image Post image

That’s a wrap on #SuriCon2025 folks! We want to thank all the attendees and virtual attendees, sponsors, our crew and internal team for making SuriCon what it is. It's been an insightful three days in Montreal and we’re looking forward to #SuriCon2026!

#Suricata #SuriCon

1 0 0 1
Post image Post image Post image

We had a sponsor talk by Corelight and big thanks to them! Next Jeff Lucovsky & Yacin Nadji did a talk on Integrating machine learning feedback with #Suricata. And we ended with Peter Manev speaking on Observe. Protect. Adapt. The Suricata Way.

Day 3 was amazing!

#SuriCon2025

1 0 0 0
Post image Post image

We’re back at it after lunch! First up was Lucas Aubard & Johan Mazel and they spoke on PYROLYSE: How to burn network stack with overlapping data. Following Ambre Iooss talked on Shovel: Leveraging Suricata for attack-defense CTF.

Both great talks!

#Suricata #SuriCon2025

1 0 0 0
Post image

We want to give a big shout out and thank you to all of our sponsors who made #SuriCon2025 possible. We value each and every one of you and we’re grateful you’re part of this community.

You guys make this possible. 🧡

#Suricata #SuriCon2025 #SuriCon

1 0 0 0
Post image Post image Post image Post image

Don’t forget to grab some merch before you head out! We’ve got lots of cool swag for you to rep #Suricata. Visit the merch table before the end of the conference!

#Suricata #SuriCon2025 #SuriCon

1 0 0 1
Post image Post image Post image

We started off strong with the State of OISF & Konstantin Klinger presented “Meerkat in the Sandbox: Turning Rule Hits into Verdicts.” He shared how the sandbox team at Proofpoint leverages #Suricata and the Emerging Threats (ET/ETPRO) ruleset within our analysis pipeline.

#SuriCon2025 #SuriCon

1 0 0 0
Post image Post image Post image

Day 3 is starting now! We’re excited to hear the remainder of the talks today as well as finish catching up with friends and peers before we all go our separate ways.

You can find the agenda here for Day 3: suricon.net/agenda-montr...

#Suricata #SuriCon2025 #SuriCon

1 0 0 1
Post image Post image Post image

That wraps up day 2! Thanks for sticking with us either in-person or virtually. These talks and discussions truly make SuriCon what it is today. Rest up for day 3 tomorrow!

You can find the agenda here: suricon.net/agenda-montr...

#Suricata #SuriCon2025 #SuriCon

1 1 0 0
Post image Post image Post image

We had a lovely welcome reception that concluded our day 1 activities yesterday. Big thanks to detections.ai for sponsoring the reception! 😀 It’s always great to mingle with our #Suricata community. Check out a few pics from the event below!

#Suricata #SuriCon2025 #SuriCon

1 0 0 0
Post image Post image Post image

We had a sponsor talk by NEOX Networks! Ted Skinner spoke on Bridging Host and Network: Enriching Linux Shell Abuse Detection with Suricata and Giuseppe Longo did a talk on Deep Packet Inspection for Building Automation: Developing a BACnet Protocol Parser for Suricata.

#Suricata #SuriCon2025

1 0 0 0
Post image Post image

Kicking off the afternoon talks, we had Patrick Kelley speak on Mental Health in Cybersecurity. Following, we had John Graat & Niels van Dijkhuizen talked on 100 Gbps in Practice and their experiences doing so.

Amazing talks!

#Suricata #SuriCon2025 #SuriCon

2 0 0 1
Post image Post image Post image

More speakers on deck! Markus Kont talked on Pikksilm: a tale of unholy alliance between endpoint agents and Suricata. Reid Wightman presented “Suricata for ICS: Tips and Moar Research.”

And right before lunch break we had a sponsor talk from detections.ai!

#Suricata #SuriCon2025 #SuriCon

1 0 0 0
Post image Post image

First up we had Ron Bowes & Glenn Thorpe talk on Abusing HTTP quirks to evade detection. A dynamic duo to kick off day two! And we had Arezki Laga speak on A Signature-Based Approach to Detect Evolving Malware Communication Patterns and Behaviors. Two great talks!

#Suricata #SuriCon2025 #SuriCon

1 0 0 0
Post image

Show time for @greynoise @ #SuriCon2025 !

0 0 0 0
Post image Post image Post image Post image

Day 2 of SuriCon is here! We had a wonderful day 1 of talks and networking followed by our welcome reception. We have another packed day so stay tuned for more talk insights!

Don’t forget to get yourself some merch! Agenda is here: suricon.net/agenda-montr...

#Suricata #SuriCon2025

1 0 0 0

Y'all who aren't physically or virtually attending #SuriCon2025 are gonna miss out on learning how to bypass all our Suricata rule detections (that generate our Tags) from @ntkramer and @iagox86

0 0 0 0
Post image Post image

What a day 1! We had many great talks, discussions and it was lovely to see old and new faces in the room with us. We look forward to the welcome reception tonight!

Rest up for Day 2 tomorrow! You can find the agenda here: suricon.net/agenda-montr...

#Suricata #SuriCon2025 #SuriCon

1 1 0 0
Post image Post image

Next up we had Juliana Fajardini Reichow deliver an amazing talk on some of Suricata’s stats counters groups and Eric Leblond spoke on developing a talisman against performance killing networks.

What a great day 1 and we’re concluding with the Suricata Roadmap!

#Suricata #SuriCon2025 #SuriCon

1 1 0 0
Two pictures of Juliana on stage. She's on the microphone, gesturing as she explains something, and on the second pic, she has a funny meme-like face.
The first pic has an over-text: Where is my meme?
The second reads: OH! I am the meme...

Two pictures of Juliana on stage. She's on the microphone, gesturing as she explains something, and on the second pic, she has a funny meme-like face. The first pic has an over-text: Where is my meme? The second reads: OH! I am the meme...

Ok, my @suricata.io for #SuriCon2025 is done. Time to BREAAAAAAAAAATH. Wohoooo
#SuriCon

And I have my own meme now.

0 0 0 0
Post image Post image

Adam Kiripolsky just took the stage and spoke on accelerating Suricata by filtering network traffic in hardware via DPDK and we had Chris Boucek & Mohammad Amr Khan speak on modern techniques for visibility and detection in the cloud!

Both great talks! Day 1 going strong!

#Suricata #SuriCon2025

1 1 0 0
Post image Post image

More speakers so far! We had IOCs Handling Reloaded with Eric Leblond as well as a sponsor talk by GreyNoise, a Community Partner on the “Great Suricata Migration.”

It’s been a great first half of the day & we can’t wait to hear more insights from this community!

#Suricata #SuriCon2025 #SuriCon

1 0 0 0
Post image Post image Post image Post image

We had a fabulous speaker dinner last night thanks to OPNsense! It was a wonderful meal filled with laughs, catching up and good bites! We want to thank all our speakers again for taking your time and sharing your insights with our community!

#Suricata #SuriCon2025 #SuriCon

2 1 0 0

Philippe Antoine is digging into a fun and super performant area of Suricata — integers in network-traffic, with multiple keywords and features to match on them.

#SuriCon2025

0 0 0 0
10:45 - 11:15: Suricata Research: WebAssembly modules in Suricata
 Pierre Chifflier

WebAssembly is a new type of code primarily intended for modern web browsers and designed to allow execution of foreign code in the target environment while providing performance and safety. It is not intended to be written by hand but is designed to be an effective compilation target for source languages like C, Rust, Typescript and even Python or Go. To execute WebAssembly modules, an application must provide an engine to run virtual machines and a set of APIs that modules are allowed to use to call functions provided by the application.

In this presentation, we will:

Present an experimentation of adding a WebAssembly engine to Suricata (available libraries, design choices, etc.)
Present some example modules, the compilation process, and how to load them into the main application.
Discuss the results in terms of performance and security, with a focus on parsing untrusted data and on the differences with the existing Rust code and LUA modules.
This experimentation is a follow-up from previous work and brainstorm discussions, with updates. It is not really proposed for inclusion, but rather given as feedback from research work.

10:45 - 11:15: Suricata Research: WebAssembly modules in Suricata Pierre Chifflier WebAssembly is a new type of code primarily intended for modern web browsers and designed to allow execution of foreign code in the target environment while providing performance and safety. It is not intended to be written by hand but is designed to be an effective compilation target for source languages like C, Rust, Typescript and even Python or Go. To execute WebAssembly modules, an application must provide an engine to run virtual machines and a set of APIs that modules are allowed to use to call functions provided by the application. In this presentation, we will: Present an experimentation of adding a WebAssembly engine to Suricata (available libraries, design choices, etc.) Present some example modules, the compilation process, and how to load them into the main application. Discuss the results in terms of performance and security, with a focus on parsing untrusted data and on the differences with the existing Rust code and LUA modules. This experimentation is a follow-up from previous work and brainstorm discussions, with updates. It is not really proposed for inclusion, but rather given as feedback from research work.

Rly excited abt the WebAssembly engine for @suricata

I know WASM is rapidly becoming as bad as Flash (as I predicted years ago) but done right, it is ~sandboxed, and this cld make running modules far less risky.

#Suricon2025

0 0 0 0
Post image Post image

So far we’ve had Dr. Kelley Misata and Victor Julien take the stage! If you’re curious about anything covered in their updates or the state of Suricata, please reach out!

Stay up to date on the agenda here: suricon.net/agenda-montr...

#Suricata #SuriCon2025 #SuriCon

2 2 0 0
Post image

SURICON STARTS NOW! 🥳 In just a little bit, we are kicking things off with our first talks and discussions! What are you most excited for today? Let us know below!

Link to the agenda is here: suricon.net/agenda-montr...

#Suricata #SuriCon2025 #SuriCon

2 2 0 0