Domaintools Header

Fingerprinting Threat Actors with the Iris Investigation Platform

See how to use the power of domain and DNS threat intelligence to investigate threat actors through their digital fingerprints.

Topic

SIEM / Threat Analytics / SOC

When & Where

calendar_month

Tue, 10/06/2020, 16:30 - 16:45

Download session as iCaldownload_for_offline

Details

  • Format:

    Technology lecture

Session description

Threat actors are constantly applying new methods, making it impossible to know everything about them or their capabilities. But, security teams can begin to discover digital fingerprints that will help lead to additional clues, just like in an investigation of a physical crime. In this session, you will see a demonstration of a threat investigation that uses the power of domain and DNS intelligence to find the digital fingerprints of threat actors in the DomainTools Iris Investigation Platform. Within Iris, security analysts can pivot across pieces of information like nameserver, Whois information, email domains, shared hosting and related domains can provide additional paths for investigators to search and reveal additional unknown domains or details to help tell the full story a ...

Moderator