#HITB2024BKK

  Рет қаралды 210

Hack In The Box Security Conference

Hack In The Box Security Conference

Күн бұрын

In an ever-changing cyber threat landscape, malware analysis is an effective tool that can help both in responding to incidents and in predicting future attacks. For the latter, attribution of malware samples is well suited, allowing one to identify a cybercriminal group. This information, especially obtained in the early stages of an attack, will make it possible to predict the attacker’s actions and proactively protect against them.
Malware attribution is a large set of measures that includes analysis of the code base of attacker tools, tactics and techniques, as well as the network infrastructure used. It is not always possible to fully classify a sample into at least one group during manual analysis; the analyst should have experience and insight, and sometimes use additional tools.
In this presentation, we will talk about the automated cyber threat attribution engine, which allows you to analyze a specific malicious sample based on a wide range of characteristics and compare it with data on known threats. As a result of this comparison, we will receive a similarity rating of the sample with the well-known APT grouping tools.
===
Anton has been involved in malware analysis since 2015. He likes thoroughly analyzing malware samples, identifying their features and similarities between each other. He has studied APT-group attacks, analyzed the tools used, analyzed network infrastructure, and searched for connections with known groups and attacks. At Positive Technologies, he developed expertise in PT Sandbox and PT EDR products. Now the main focus is on complex analysis of malware, development of approaches to automated classification of samples and search for similar ones for Threat Intelligence purposes.

Пікірлер
#HITB2024BKK #COMMSEC D1: Flash Loans: The Blessing or Curse of DeFi
41:12
Hack In The Box Security Conference
Рет қаралды 93
#HITB2024BKK #COMMSEC D1: My First and Last Shellcode Loader
1:10:43
Hack In The Box Security Conference
Рет қаралды 542
Vampire SUCKS Human Energy 🧛🏻‍♂️🪫 (ft. @StevenHe )
0:34
Alan Chikin Chow
Рет қаралды 138 МЛН
Вопрос Ребром - Джиган
43:52
Gazgolder
Рет қаралды 3,8 МЛН
#HITB2024BKK #COMMSEC D1: CoralRaider Targets Victims Data and Social Media Accounts
30:20
Hack In The Box Security Conference
Рет қаралды 177
Как устроен QR-код? [Veritasium]
33:28
Vert Dider
Рет қаралды 777 М.
DEF CON 32 - The Darkest Side of Bug Bounty - Jason Haddix
32:30
DEFCONConference
Рет қаралды 54 М.
#HITB2024BKK #COMMSEC D2: Leveraging LLMs to Enhance Insider Threat Investigation Capabilities
34:39
Vampire SUCKS Human Energy 🧛🏻‍♂️🪫 (ft. @StevenHe )
0:34
Alan Chikin Chow
Рет қаралды 138 МЛН