Fighting Back Against Cobalt Strike, presented by Callum Roxan and James Dorgan

  Рет қаралды 4,279

WithSecure

WithSecure

2 жыл бұрын

Cobalt Strike remains one of the most prevalent attack frameworks used by threat actors and has even grown in popularity. Regardless of the attacker’s motive, it continues to play a reoccurring role in intrusions, due to its wide availability, flexibility, and ability to remain undetected on most victim networks. In this talk, Callum and James discuss proven and effective strategies for detecting Cobalt Strike. This talk is built from insights gained over years of threat detection research, incident response cases, and managed detection and response investigations. They break down recent real-world incidents, identifying and explaining the key detection opportunities in each, and revealing the detection logic and strategies that have continually allowed them to stay one step ahead. They also provide insight into how attackers are leveraging Cobalt Strike, and what can be learnt from their patterns of behavior, to help to develop a robust detection capability.

Пікірлер: 6
@nxu5107
@nxu5107 Жыл бұрын
Great presentation gents. Thanks a lot.
@maxtuono2009
@maxtuono2009 2 жыл бұрын
guys you rock !!!
@KoKo-xj9jl
@KoKo-xj9jl 2 жыл бұрын
My machine has cobalt strike beacon client installed does anyone have a suggestions ? Windows 10 64bit I have not connect in the internet since I discovered it. They are very scary.
@user-io8ti9ht4w
@user-io8ti9ht4w 2 жыл бұрын
Hello, can I share the slides?
@realcucus
@realcucus 11 ай бұрын
fighting a cobalt strike at this time!!!
@realcucus
@realcucus 10 ай бұрын
Me too , any luck?
Keynote: Cobalt Strike Threat Hunting | Chad Tilbury
45:45
SANS Digital Forensics and Incident Response
Рет қаралды 30 М.
Common misconceptions and mistakes made in Threat Hunting
31:22
SANS Digital Forensics and Incident Response
Рет қаралды 4,1 М.
Must-have gadget for every toilet! 🤩 #gadget
00:27
GiGaZoom
Рет қаралды 11 МЛН
Luck Decides My Future Again 🍀🍀🍀 #katebrush #shorts
00:19
Kate Brush
Рет қаралды 8 МЛН
Homemade Professional Spy Trick To Unlock A Phone 🔍
00:55
Crafty Champions
Рет қаралды 59 МЛН
KEYNOTE Mikko Hyppönen at SPHERE24
42:12
WithSecure
Рет қаралды 1,7 М.
Investigating WMI Attacks
1:00:43
SANS Digital Forensics and Incident Response
Рет қаралды 26 М.
Threat Hunting via DNS with Eric Conrad - SANS Blue Team Summit 2020
54:56
SANS Cyber Defense
Рет қаралды 22 М.
Attack Detection Fundamentals: Workshop #1 - Initial Access
1:06:36
My “Aha!” Moment - Methods, Tips, & Lessons Learned in Threat Hunting - SANS THIR Summit 2019
33:41
SANS Digital Forensics and Incident Response
Рет қаралды 13 М.
🚀  TDD, Where Did It All Go Wrong (Ian Cooper)
1:03:55
DevTernity Conference
Рет қаралды 551 М.
How to Present Cyber Security Risk to Senior Leadership | SANS Webcast
59:58
KEYNOTE Christine Bejerasco at SPHERE24
35:35
WithSecure
Рет қаралды 68
Network Security - Deep Dive Replay
3:08:19
Kevin Wallace Training, LLC
Рет қаралды 134 М.
Threat Hunting via Sysmon - SANS Blue Team Summit
51:01
SANS Institute
Рет қаралды 59 М.
#miniphone
0:16
Miniphone
Рет қаралды 3,6 МЛН
ИГРОВОВЫЙ НОУТ ASUS ЗА 57 тысяч
25:33
Ремонтяш
Рет қаралды 240 М.
cute mini iphone
0:34
승비니 Seungbini
Рет қаралды 5 МЛН
CY Superb Earphone 👌 For Smartphone Handset
0:42
Tech Official
Рет қаралды 826 М.
1$ vs 500$ ВИРТУАЛЬНАЯ РЕАЛЬНОСТЬ !
23:20
GoldenBurst
Рет қаралды 1,3 МЛН