Overview
Syllabus
FireEye
Whoami
Leviathan
Data
Worldwide malware ecosystem
C2 malware signatures
Tactics, techniques, and procedures
Every industry vertical owned
Callbacks: ebb and flow
Knock Knock
Hiding in Plain Site
Callback destinations from South Korea
Hiding in plain "site"
Targeted Callbacks
Semantic signatures
World C2 network map
Connectivity and malware
Callbacks by vertical / country
The king of malware
USA: the top callback destination
March in Russia/Ukraine
Geopolitical reflection: Ukraine crisis
Callbacks to Russia
RU-UA unique callbacks by country
Unique country callbacks
Israel: traffic analysis
Geopolitical reflection: Israel-Gaza crisis
Unique callbacks: CA to IL (2014)
Contact Info