
Fingerprinting Threat Actors with the Iris Investigation Platform
See how to use the power of domain and DNS threat intelligence to investigate threat actors through their digital fingerprints.
Topic
SIEM / Threat Analytics / SOC
When & Where
Tue, 10/06/2020, 16:30 - 16:45
Details
Format:
Technology lecture
Session description
Threat actors are constantly applying new methods, making it impossible to know everything about them or their capabilities. But, security teams can begin to discover digital fingerprints that will help lead to additional clues, just like in an investigation of a physical crime.
In this session, you will see a demonstration of a threat investigation that uses the power of domain and DNS intelligence to find the digital fingerprints of threat actors in the DomainTools Iris Investigation Platform.
Within Iris, security analysts can pivot across pieces of information like nameserver, Whois information, email domains, shared hosting and related domains can provide additional paths for investigators to search and reveal additional unknown domains or details to help tell the full story a ...
Moderator
