APT Presentation from July 2008

February 6th, 2010 admin

Some of you may remember me mentioning the 2008 SANS WhatWorks in Incident Response and Forensic Solutions Summit organized by Rob Lee. I provided the keynote and really enjoyed listening to the presentations, which Rob has graciously made available at http://files.sans.org/summit/forensics08/ . One of the presentations, by Mandiant consultant Wendi Rafferty and then-Mandiant consultant (now GE-CIRT incident handler) Ken Bradley, was titled Slaying the Red Dragon . As you can see from the …


Originally posted on TAOSecurity

 
  Related Posts
Audio of Bejtlich Presentation on Network Security Monitoring
Audio of Bejtlich Presentation on Network Security Monitoring
One of the presentations I delivered at the Information Security Summit last month discussed Network Security Monitoring. The Security Justice guys recorded audio of the presentation and posted it here as Network Security Monitoring and Incident Response. The audio file is InfoSec2009_RichardBejtlich.mp3. Copyright 2003-2009 Richard Bejtlich and... 
Google and NSA Fulfilling 2008 Predictions
Google and NSA Fulfilling 2008 Predictions
In December 2007 I wrote Predictions for 2008 . They included 2) Expect greater military involvement in defending private sector networks; 3) Expect increased awareness of external threats and less emphasis on insider threats; and 4) Expect greater attention paid to incident response and network forensics, and less on prevention. All three of... 
Offshoring Incident Response
Offshoring Incident Response
A blog reader emailed the following question. We recently had a CISO change, and in the process of doing an initial ops review and looking at organizational structure, one of the questions the new CISO has is about the viability of offshoring incident response… I would be very interested in your views on this matter, and would appreciate... 
Tentative Speaker List for SANS Incident Detection Summit
Tentative Speaker List for SANS Incident Detection Summit
Thanks to everyone who attended the Bejtlich and Bradley Webcast for SANS yesterday. We recorded that Webcast (audio is now available ) to start a discussion concerning professional incident detection. I’m pleased to publish the following tentative speaker list for the SANS WhatWorks in Incident Detection Summit 2009 on 9-10 Dec in Washington,... 
Every Software Vendor Must Read and Heed
Every Software Vendor Must Read and Heed
Matt Olney and I spoke about the role of a Product Security Incident Response Team ( PSIRT ) at my SANS Incident Detection Summit this month. I asked if he would share his thoughts on how software vendors should handle vulnerability discovery in their software products. I am really pleased to report that Matt wrote a thorough, public blog post... 
Wednesday is Last Day for Discounted SANS Registration
Wednesday is Last Day for Discounted SANS Registration
In my off time I’m still busy organizing the SANS WhatWorks in Incident Detection Summit 2009 , taking place in Washington, DC on 9-10 Dec 09. The agenda page should be updated soon to feature all of the speakers and panel participants. Wednesday is the last day to register at the discounted rate . I wrote the following to provide more information... 
Thanks for a Great Incident Detection Summit
Thanks for a Great Incident Detection Summit
We had a great SANS WhatWorks in Incident Detection Summit 2009 this week! About 100 people attended. I’d like to thank those who joined the event as attendees; those who participated as keynotes (great work Ron Gula and Tony Sager), guest moderators (Rocky DeStefano, Mike Cloppert, and Stephen Windsor), speakers, and panelists; Debbie Grewe... 
Notes from Tony Sager Keynote at SANS
Notes from Tony Sager Keynote at SANS
I took a few notes at the SANS Incident Detection Summit keynote by Tony Sager last week. I thought you might like to see what I recorded. All of the speakers made many interesting comments, but it was really only during the start of the second day, when Tony spoke, when I had time to write down some insights. If you’re not familiar with... 
Mandiant M-Trends on APT
Mandiant M-Trends on APT
If you want to read a concise yet informative and clue-backed report on advanced persistent threat , I recommend completing this form to receive the first Mandiant M-Trends report. Mandiant occupies a unique position with respect to this problem because they are one of only two security service companies with substantial counter-APT consulting... 
Bejtlich and Bradley on SANS Webcast Monday 2 Nov
Bejtlich and Bradley on SANS Webcast Monday 2 Nov
Ken Bradley and I will conduct a Webcast for SANS on Monday 2 Nov at 1 pm EST. Check out the sign-up page. I’ve reproduced the introduction here. Every day, intruders find ways to compromise enterprise assets around the world. To counter these attackers, professional incident detectors apply a variety of host, network, and other mechanisms... 
  Related Tweets from Twitter
nycapartments10 (seanvosler)  : New post: Fully rnovated 2 br apt Close to L train Dekalb stop (Bushwick/E.williamsburg) $1350 2bd http://cli.gs/8mrGJ #manhattan..
Updated : 2010-03-11T23:20:31Z   |  Reply  |  View Tweet
chocolaticlaire (Claire J Taylor)  : @rapgrimeuk pleased for you to be my 500th. The fact that you're hip hop related is so apt...
Updated : 2010-03-11T23:20:23Z   |  Reply  |  View Tweet
creoLeREDD (Creole)  : this song reminds me of gainesville dam i miss my apt.. sippin wine blowin kush all day (btw) the real kush some niggas think they b on dat..
Updated : 2010-03-11T23:19:57Z   |  Reply  |  View Tweet
ange77h (Angela Higgins)  : #bbcqt this topic's quite apt just now, the guy from my corner shop has just been hospitalised by a someone wielding a hammer! terrible...
Updated : 2010-03-11T23:19:48Z   |  Reply  |  View Tweet
cestleighvie (Leigh Guillermo)  : @EDGESKII did you get your apt?!?..
Updated : 2010-03-11T23:19:39Z   |  Reply  |  View Tweet
  Related News from Digg
No comments yet.

Spam Protection by WP-SpamFree

TOP