APT Presentation from July 2008

February 6th, 2010 admin

Some of you may remember me mentioning the 2008 SANS WhatWorks in Incident Response and Forensic Solutions Summit organized by Rob Lee. I provided the keynote and really enjoyed listening to the presentations, which Rob has graciously made available at http://files.sans.org/summit/forensics08/ . One of the presentations, by Mandiant consultant Wendi Rafferty and then-Mandiant consultant (now GE-CIRT incident handler) Ken Bradley, was titled Slaying the Red Dragon . As you can see from the first two slides shown at left, this was presentation explicitly addressed advanced persistent threat . I didn’t mention it originally because it discusses a specific attack vector. However, it’s been over 18 months since the presentation was made. Therefore, to show that APT is…


Originally posted on TAOSecurity

 
  Related Posts
Bejtlich to Speak at SANS Forensics and Incident Response 2010
Bejtlich to Speak at SANS Forensics and Incident Response 2010
I am pleased to announce that I will return for the third SANS WhatWorks Summit in Forensics and Incident Response in DC, 8-9 July 2010. Rob Lee sent an email stating I would be on the Advanced Persistent Threat Panel with Chris Glyer and Mike Cloppert, so I’m looking forward to participating. I might also have a solo presentation, but I... 
Brief Thoughts on SANS WhatWorks Summit in Forensics and Incident Response 2010
Brief Thoughts on SANS WhatWorks Summit in Forensics and Incident Response 2010
Last week I spoke at the third SANS WhatWorks Summit in Forensics and Incident Response in DC, organized and led by Rob Lee. As usual, Rob did a wonderful job bringing together interesting speakers and timely topics. I thought my presentation on “CIRT-level Response to Advanced Persistent Threat” went well and I enjoyed participating... 
SANS WhatWorks Summit in Forensics and Incident Response
SANS WhatWorks Summit in Forensics and Incident Response
I wanted to remind everyone about the SANS WhatWorks Summit in Forensics and Incident Response in DC, 8-9 July 2010. The Agenda looks great. I will offer the “Expert Briefing: CIRT-level Response to Advanced Persistent Threat” and participate on the “APT Panel Discussion.” This IR event is a great precursor to my next SANS... 
Comments on Sharkfest Presentation Materials
Comments on Sharkfest Presentation Materials
I saw that presentations from Sharkfest 2010 are now posted. This is the third year that CACE Technologies has organized this conference. I’ve had conflicts each of the last three years, but I think I need to reserve the dates for 2011 when they are available. In this post I wanted to mention a few slides that looked interesting. Jasper... 
What Is APT and What Does It Want?
What Is APT and What Does It Want?
This has been the week to discuss the advanced persistent threat , although some people are already telling me Google v China with respect to APT is “silly,” or that the attack vectors were what everyone has been talking about for years, and were somewhat sloppily orchestrated at that. I think many of these critics are missing the... 
  Related Tweets from Twitter
_1stLADYDUTCH (DUTCHESS)  : Gettin ready to head back to Laffy!!! I be lowkey ready to go back to my apt everytime I come to Patterson!!..
Updated : 2010-09-04T14:37:03Z   |  Reply  |  View Tweet
Averiana (MsParalegal)  : I cleaned the whole apt last nite and I get up this morning and my homegirl has messed up the dishes again!!..
Updated : 2010-09-04T14:36:55Z   |  Reply  |  View Tweet
JaiY0 ( J? A? I? )  : ......somebodys in a good mood this a.m. *sprints around apt nakeed* lol..
Updated : 2010-09-04T14:36:30Z   |  Reply  |  View Tweet
stefffer (Stef P)  : @Momtobradyn we're lost driving back to A's apt, so we're just seeing her rage right now. Haha. But excited for baseball & crabcake tonight!..
Updated : 2010-09-04T14:36:07Z   |  Reply  |  View Tweet
Meligy (Mohamed Meligy)  : @mShady :D :D, u win. didn't hear the 2nd. &I won't until Monday or so. The Internet at temp apt is limited to 100MB/day (me+wife=1 account)..
Updated : 2010-09-04T14:35:50Z   |  Reply  |  View Tweet
  Related News from Digg
  1. June 10th, 2010 at 08:29
    Reply | Quote | #1

    You post informative posts. Bookmarked !

  2. July 16th, 2010 at 13:59
    Reply | Quote | #2

    Hello there! This is interesting for sure! Go to go but I will be back (T2 style… if you get what I mean).

  3. July 17th, 2010 at 06:14
    Reply | Quote | #3

    Hello! This is nice for sure! Go to go but I will be back (T2 style… if you know what I mean).

Spam Protection by WP-SpamFree

TOP