Terminology Index
Glossary
1801 terms
Showing 673-704 of 1801 terms
Flow Data
Network telemetry that records metadata about connections, source and destination, ports, protocol, bytes, and timing, without capturing packet contents. It gives broad, efficient visibility into who talked to whom across a network.
Flow data (such as NetFlow or cloud VPC flow logs) summarizes network conversations rather than recording full packets, capturing the who, when, how much, and over what protocol. It is far more storage-efficient than full packet capture and reveals patterns like beaconing, lateral movement, and large transfers that suggest exfiltration. As a core network telemetry source, flow data underpins detection, hunting, and investigation of network activity.
Introduced in: Logging, Monitoring, and Telemetry
Examples
- Spotting steady beaconing to an external host from flow records.
- Detecting a large outbound transfer suggesting exfiltration in flow data.
- Using flow logs to see which hosts a compromised system contacted.
No related terms linked yet.
