Learn to develop a comprehensive cyber threat actor attribution program in this 22-minute conference talk from BSides Philly 2016. Explore topics including Morse Code, Sun Tzu's strategies, spear phishing, business email compromise, social engineering, and data monitoring. Discover techniques for identifying attacker behaviors, habits, and forensic evidence. Gain insights into investigative tools, data extraction methods, and the importance of analyzing common strings. Understand the challenges of collecting too much information and how to effectively attribute cyber attacks to specific threat actors.
Knowing the Enemy - Creating a Cyber Threat Actor Attribution Program