The Snare for Chrome agent provides a valuable audit trail of user activity, and by association, any malicious activity injected by remote sites into the users’ web requests. Data is passed to a Snare Server, or compatible application, for analysis, and includes information on the URL accessed (ie: the web page, or image, or cascading style sheet), the date/time, the length of the request, the response, and the page from which the resource was requested.
The newer versions of the Snare Server incorporates new template objectives designed to analyse log data from the Chrome browser, including:
- Inappropriate usage (eg: accessing links that include a pornographic component within the URL)
- Cookie changes
- Access to social media sites
- Snare for Chrome configuration changes
- Ad-hoc queries of arbitrary scope.
Snare Server output components for Browser-related content include, but are not limited to Tabular output, 15-minute segmented graphical pattern maps, Pie, Line and Horizontal graphs of various types, Bandwidth analysis graphs,CSV/TXT output, and Random image samples