{"guid":"5688d15a-d92f-4a5e-b75d-c8d47846ea3a","title":"When hacker uses ELK stack for visualization","subtitle":null,"slug":"MRMCD15-7038-when_hacker_uses_elk_stack_for_visualization","link":"https://mrmcd.net/2015/fahrplan/events/7038.html","description":"Visualizing Wi-Fi traffic is today more or less limited to console windows and analyzing different logs from aircrack-ng toolset. There are some commercial tools, but if we want to stay in open source area we need to find better solution. So ELK stack was used to gather, hold, index and visualize data. For input modified version of airodump tool was used. With this some amazing dashboards can be created and some interesting data can be correlated and some deep digging can be made for Wi-Fi packets.","original_language":"eng","persons":["Milan Gabor"],"tags":["Talks"],"view_count":296,"promoted":false,"date":"2015-09-05T21:00:00.000+02:00","release_date":"2015-09-05T02:00:00.000+02:00","updated_at":"2025-08-29T09:45:05.695+02:00","length":3344,"duration":3344,"thumb_url":"https://static.media.ccc.de/media/conferences/mrmcd/mrmcd15/7038-sd.jpg","poster_url":"https://static.media.ccc.de/media/conferences/mrmcd/mrmcd15/7038-sd_preview.jpg","timeline_url":"https://static.media.ccc.de/media/conferences/mrmcd/mrmcd15/5688d15a-d92f-4a5e-b75d-c8d47846ea3a-timeline.jpg","thumbnails_url":"https://static.media.ccc.de/media/conferences/mrmcd/mrmcd15/5688d15a-d92f-4a5e-b75d-c8d47846ea3a-thumbnails.vtt","frontend_link":"https://media.ccc.de/v/MRMCD15-7038-when_hacker_uses_elk_stack_for_visualization","url":"https://api.media.ccc.de/public/events/5688d15a-d92f-4a5e-b75d-c8d47846ea3a","conference_title":"MRMCD 2015 - Schneller. Höher. Weiter.","conference_url":"https://api.media.ccc.de/public/conferences/mrmcd15","related":[{"event_id":2008,"event_guid":"zLQRrJi05bpzgkLweZJT1Q","weight":1},{"event_id":2477,"event_guid":"cb9bc487-84aa-4f9c-931a-6de0bdf25e43","weight":1},{"event_id":2482,"event_guid":"46d21af4-3f70-4024-b7bd-52d40634b891","weight":1},{"event_id":2637,"event_guid":"cbb9db2e-a159-4bea-a2a3-eac73061d1f4","weight":1},{"event_id":2639,"event_guid":"df47f216-8cd0-465c-aec5-d30821943821","weight":1},{"event_id":2640,"event_guid":"a650a156-dd80-4e99-bc55-4514e055cfc6","weight":1},{"event_id":2645,"event_guid":"e461284d-fdff-4699-9ff5-57e310f95801","weight":1},{"event_id":2827,"event_guid":"f79c744f-30d1-4175-a173-2e760049337d","weight":1},{"event_id":2990,"event_guid":"6de11db2-2aae-4cd1-969f-f2a16a557f8f","weight":1},{"event_id":2999,"event_guid":"0cd4467e-31c9-43bf-a315-491dc48c3c6a","weight":1},{"event_id":3041,"event_guid":"29aaed8b-5b17-4feb-a9fc-7cc584682746","weight":1},{"event_id":3058,"event_guid":"56846834-12f4-495f-b92f-8cae32b8f1c2","weight":3},{"event_id":3465,"event_guid":"5b106c5d-b569-4550-83da-ba1aa4217f4d","weight":1},{"event_id":3586,"event_guid":"cd6ab67f-ea8b-5119-af38-ba7c308f8da2","weight":1},{"event_id":3772,"event_guid":"e89c168d-dc51-4de1-8aa0-26743ee5c815","weight":1},{"event_id":3853,"event_guid":"efeeaebc-3f29-11e7-9ba7-2f214305c877","weight":1},{"event_id":3943,"event_guid":"sei-F_kQp49QL0o97grYzQ","weight":1},{"event_id":4224,"event_guid":"a59ac068-c147-44a6-8d55-ae35448727b8","weight":1},{"event_id":4225,"event_guid":"510789b5-ce0c-427f-9ead-8c7d7ad44b51","weight":1},{"event_id":4231,"event_guid":"64df64c2-5702-4892-8316-4f5ec87aad56","weight":1},{"event_id":4234,"event_guid":"f471ff12-1889-41c8-b65e-787b87c460db","weight":1},{"event_id":4240,"event_guid":"dec63dd2-d66b-419d-863d-c20fd5ce91dd","weight":1},{"event_id":4249,"event_guid":"98f8267c-cad1-4d04-8a52-f7e979e68c00","weight":1},{"event_id":4250,"event_guid":"80bf473f-8f34-4b9b-92be-ccdbf75952e2","weight":1},{"event_id":4252,"event_guid":"56579910-e430-4897-99f9-eb2116609f01","weight":1},{"event_id":4261,"event_guid":"3852e448-f6cf-4bfe-8b14-12d590075bd6","weight":1},{"event_id":4264,"event_guid":"9b45fac3-3ccb-4778-abf1-cc564467ede1","weight":1},{"event_id":4270,"event_guid":"c6747c8b-649f-4cad-ae7a-b5bd6138ca3f","weight":1},{"event_id":4273,"event_guid":"abd8b143-a3d8-4655-bd1c-a355a0bd5d8d","weight":1},{"event_id":4281,"event_guid":"271f3623-a772-4052-81da-04872d9651ce","weight":1},{"event_id":4286,"event_guid":"30b059d7-2809-4fd2-83b8-5e445acdf4ca","weight":1},{"event_id":4293,"event_guid":"dd774554-e12d-4557-b91c-3f6039cd4aeb","weight":1},{"event_id":4297,"event_guid":"f0710900-b07f-4dfa-b762-af73aa4dc663","weight":1},{"event_id":4300,"event_guid":"d48d1713-333b-4515-b56d-bc12fa2d3c44","weight":1},{"event_id":4306,"event_guid":"8db39cdd-7700-4123-a22d-22393e282154","weight":1},{"event_id":4310,"event_guid":"98a24995-17aa-415a-9cf5-906faa0d1475","weight":1},{"event_id":4325,"event_guid":"e5412850-3b73-40f2-98d2-29c51da1fe41","weight":1},{"event_id":4331,"event_guid":"6e4cc66d-2edc-41ab-9d9b-6ec921e0944d","weight":1},{"event_id":4337,"event_guid":"444f2c42-36c5-4cc2-9a1f-2d9894eedd6d","weight":1},{"event_id":4342,"event_guid":"b66aab4c-c160-4dc5-8b21-7b4ea21ecb39","weight":1},{"event_id":4343,"event_guid":"57920452-ce5b-4194-a768-fed44de6d779","weight":1},{"event_id":4351,"event_guid":"06f3958c-0e2c-4dfc-804c-9493fae7fe9b","weight":1},{"event_id":4362,"event_guid":"67b3b3d4-6098-4694-896c-3e6f76b400d7","weight":1},{"event_id":4372,"event_guid":"01d07c5c-8a4e-4dbf-acf5-126d738a1ddf","weight":1},{"event_id":4756,"event_guid":"ff07fa0e-c32a-11e7-b8e4-fb6414355a49","weight":1},{"event_id":4968,"event_guid":"f588fca0-d2c1-45e2-ba34-4b055a369b2a","weight":1},{"event_id":4969,"event_guid":"2f480a87-d595-4312-97c1-0a0f0fa0f75a","weight":1},{"event_id":4971,"event_guid":"bac4a0c4-8ee0-485d-8fc8-92ea06357881","weight":2},{"event_id":4999,"event_guid":"d7a41c0e-22a7-42b0-9201-49edaa00e85a","weight":1},{"event_id":5006,"event_guid":"d5afa965-4bfb-4d28-8ff9-ad5eef4bec3e","weight":1},{"event_id":5073,"event_guid":"74d7736f-f73a-5164-9e7d-2fc69e74cc99","weight":1},{"event_id":5074,"event_guid":"a6054988-4570-5b14-8a61-ef934f21c10e","weight":1},{"event_id":5127,"event_guid":"1b13335b-eea5-579e-8e14-480a4467cd24","weight":1},{"event_id":5274,"event_guid":"c38c514b-99f4-4906-a0e5-189df72dbd9e","weight":1},{"event_id":5363,"event_guid":"cf6aff6c-bd9c-541b-baa8-abebd20130a1","weight":1},{"event_id":5365,"event_guid":"93a28ecf-424d-57d1-85ce-c40621145f32","weight":1},{"event_id":5411,"event_guid":"15dde167-7d6b-5c0b-9a50-584478acc824","weight":1},{"event_id":5442,"event_guid":"f7cd2319-352f-5755-ac13-4c587c3852e4","weight":1},{"event_id":6233,"event_guid":"9fa9eae0-2d2f-4bce-a7f5-1983003b3db7","weight":1},{"event_id":6447,"event_guid":"1cc2086d-bfd7-53fd-8ae2-25efc204bcdf","weight":1},{"event_id":6484,"event_guid":"600ea8de-65d9-540d-abb1-a4f956e6143f","weight":3},{"event_id":6499,"event_guid":"a750228d-a37d-43c0-8e2f-d46137a991dc","weight":1}],"recordings":[{"size":187,"length":3344,"mime_type":"video/webm","language":"eng","filename":"MRMCD15-7038-en-When_hacker_uses_ELK_stack_for_visualization_webm.webm","state":"downloaded","folder":"webm","high_quality":false,"width":720,"height":576,"updated_at":"2016-02-03T14:10:33.093+01:00","recording_url":"https://cdn.media.ccc.de/events/mrmcd/mrmcd15/webm/MRMCD15-7038-en-When_hacker_uses_ELK_stack_for_visualization_webm.webm","url":"https://api.media.ccc.de/public/recordings/7672","event_url":"https://api.media.ccc.de/public/events/5688d15a-d92f-4a5e-b75d-c8d47846ea3a","conference_url":"https://api.media.ccc.de/public/conferences/mrmcd15"},{"size":18,"length":3337,"mime_type":"audio/opus","language":"eng","filename":"MRMCD15-7038-en-When_hacker_uses_ELK_stack_for_visualization_opus.opus","state":"downloaded","folder":"opus","high_quality":true,"width":null,"height":null,"updated_at":"2015-09-05T22:35:36.149+02:00","recording_url":"https://cdn.media.ccc.de/events/mrmcd/mrmcd15/opus/MRMCD15-7038-en-When_hacker_uses_ELK_stack_for_visualization_opus.opus","url":"https://api.media.ccc.de/public/recordings/7663","event_url":"https://api.media.ccc.de/public/events/5688d15a-d92f-4a5e-b75d-c8d47846ea3a","conference_url":"https://api.media.ccc.de/public/conferences/mrmcd15"},{"size":25,"length":3337,"mime_type":"audio/mpeg","language":"eng","filename":"MRMCD15-7038-en-When_hacker_uses_ELK_stack_for_visualization_mp3.mp3","state":"downloaded","folder":"mp3-audio-only","high_quality":true,"width":null,"height":null,"updated_at":"2015-09-05T22:36:20.414+02:00","recording_url":"https://cdn.media.ccc.de/events/mrmcd/mrmcd15/mp3-audio-only/MRMCD15-7038-en-When_hacker_uses_ELK_stack_for_visualization_mp3.mp3","url":"https://api.media.ccc.de/public/recordings/7664","event_url":"https://api.media.ccc.de/public/events/5688d15a-d92f-4a5e-b75d-c8d47846ea3a","conference_url":"https://api.media.ccc.de/public/conferences/mrmcd15"},{"size":210,"length":3344,"mime_type":"video/mp4","language":"eng","filename":"MRMCD15-7038-en-When_hacker_uses_ELK_stack_for_visualization_sd.mp4","state":"downloaded","folder":"h264-hq","high_quality":false,"width":720,"height":576,"updated_at":"2016-02-03T14:10:32.693+01:00","recording_url":"https://cdn.media.ccc.de/events/mrmcd/mrmcd15/h264-hq/MRMCD15-7038-en-When_hacker_uses_ELK_stack_for_visualization_sd.mp4","url":"https://api.media.ccc.de/public/recordings/7661","event_url":"https://api.media.ccc.de/public/events/5688d15a-d92f-4a5e-b75d-c8d47846ea3a","conference_url":"https://api.media.ccc.de/public/conferences/mrmcd15"}]}