• DMCA
  • Disclaimer
  • Terms and Conditions
  • Cookie Privacy Policy
  • Privacy Policy
  • Contact
  • Advertise
  • Home
  • Review
    Twilio gets hacked, teens ditch Facebook, and SpaceX takes South Korea to the moon – TechCrunch

    Twilio gets hacked, teens ditch Facebook, and SpaceX takes South Korea to the moon – TechCrunch

    You’re not that special (I swear, there’s a startup angle here) – TechCrunch

    You’re not that special (I swear, there’s a startup angle here) – TechCrunch

    Is the future of the microchip industry going to be Made in America? – TechCrunch

    Is the future of the microchip industry going to be Made in America? – TechCrunch

    What’s really the best Taylor Swift song? – TechCrunch

    What’s really the best Taylor Swift song? – TechCrunch

    The weekend’s best deals: Apple MacBook Air, Resident Evil bundle, and more

    The weekend’s best deals: Apple MacBook Air, Resident Evil bundle, and more

    A little taste of everything that’s out there

    A little taste of everything that’s out there

  • Gaming
    PUBG: Battlegrounds Has Grown By 80,000 Players Each Day Since Going Free-to-Play

    PUBG: Battlegrounds Has Grown By 80,000 Players Each Day Since Going Free-to-Play

    Video: Nintendo Explains How To Download Paid DLC In New Switch Online + Expansion Pack Guide

    Video: Nintendo Explains How To Download Paid DLC In New Switch Online + Expansion Pack Guide

    Like Netflix’s Day Shift? The director wants you to watch these movies

    Like Netflix’s Day Shift? The director wants you to watch these movies

    Madden NFL 23 – Everything To Know

    Madden NFL 23 – Everything To Know

    Random: Masahiro Sakurai Reminds Nintendo Fans About 3DS & Wii U eShop Closure Dates

    Random: Masahiro Sakurai Reminds Nintendo Fans About 3DS & Wii U eShop Closure Dates

    Japan’s My Summer Vacation series is now in English, thanks to Crayon Shin-chan

    Japan’s My Summer Vacation series is now in English, thanks to Crayon Shin-chan

  • Gear
    • All
    • Audio
    • Camera
    • Laptop
    • Smartphone
    Samsung says the Galaxy Z Fold 4 and Flip 4 will give it a leg up over rivals

    Samsung says the Galaxy Z Fold 4 and Flip 4 will give it a leg up over rivals

    Flashback: 15 years of Gorilla Glass on phones

    Flashback: 15 years of Gorilla Glass on phones

    Unannounced Motorola Moto E22i snatches FCC and TDRA certifications

    Unannounced Motorola Moto E22i snatches FCC and TDRA certifications

    Two legendary EQ rivals Compared — SonicScoop

    Two legendary EQ rivals Compared — SonicScoop

    The best Android gamepad (for now)

    The best Android gamepad (for now)

    Vivo V25 5G and V25e 4G global variants appear in live photos

    Vivo V25 5G and V25e 4G global variants appear in live photos

    Trending Tags

    • Best iPhone 7 deals
    • Apple Watch 2
    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • iOS 10
    • iPhone 7
    • Sillicon Valley
  • Computers
    Podcast #689 – Ryzen 7000 RAM Speed, NVIDIA’s Bad Quarter, Intel Arc Pro GPUs, Hackaday Prizes, Quantum Computing Fail and MORE

    Podcast #689 – Ryzen 7000 RAM Speed, NVIDIA’s Bad Quarter, Intel Arc Pro GPUs, Hackaday Prizes, Quantum Computing Fail and MORE

    Another SFF From Geekom, MiniAir 11

    Another SFF From Geekom, MiniAir 11

    Patriot Viper VPR400, 1TB Of RGBs

    Patriot Viper VPR400, 1TB Of RGBs

    All New Rescuezilla 2.4, And New-ish Redo Rescue Too!

    All New Rescuezilla 2.4, And New-ish Redo Rescue Too!

    Google Decided To Drop The Silly Answers, Not The Evil

    Google Decided To Drop The Silly Answers, Not The Evil

    Improving on Expandable CPU Cooling

    Improving on Expandable CPU Cooling

  • Applications
    Nintendo recap: Splatoon 3 amiibo and Splatfest announced, plus Waluigi bachelorette party explodes on Tiktok

    Nintendo recap: Splatoon 3 amiibo and Splatfest announced, plus Waluigi bachelorette party explodes on Tiktok

    Thanks, Apple, I hate the new battery percentage indicator

    Thanks, Apple, I hate the new battery percentage indicator

    Chinese Hackers Backdoored MiMi Chat App to Target Windows, Linux, macOS Users

    Chinese Hackers Backdoored MiMi Chat App to Target Windows, Linux, macOS Users

    The best ways to get started with Shortcuts on iPad

    The best ways to get started with Shortcuts on iPad

    New report says that Apple wanted to “build businesses” with Facebook

    New report says that Apple wanted to “build businesses” with Facebook

    Apple debuts first look at Brie Larson drama series Lessons in Chemistry

    Apple debuts first look at Brie Larson drama series Lessons in Chemistry

  • Security
    Vendor Bug Advisories Are Broken, So Broken

    Vendor Bug Advisories Are Broken, So Broken

    New exploits can bypass Secure Boot and modern UEFI security protections

    New exploits can bypass Secure Boot and modern UEFI security protections

    Software Supply Chain Chalks Up a Security Win With New Crypto Effort

    Software Supply Chain Chalks Up a Security Win With New Crypto Effort

    Meta Tests Encrypted Backups and End-to-End Encryption in Facebook Messenger

    Meta Tests Encrypted Backups and End-to-End Encryption in Facebook Messenger

    Xiaomi Smartphone Vulnerabilities Could Lead to Forged Payments

    Xiaomi Smartphone Vulnerabilities Could Lead to Forged Payments

    Novel Ransomware Comes to the Sophisticated SOVA Android Banking Trojan

    Novel Ransomware Comes to the Sophisticated SOVA Android Banking Trojan

No Result
View All Result
  • Home
  • Review
    Twilio gets hacked, teens ditch Facebook, and SpaceX takes South Korea to the moon – TechCrunch

    Twilio gets hacked, teens ditch Facebook, and SpaceX takes South Korea to the moon – TechCrunch

    You’re not that special (I swear, there’s a startup angle here) – TechCrunch

    You’re not that special (I swear, there’s a startup angle here) – TechCrunch

    Is the future of the microchip industry going to be Made in America? – TechCrunch

    Is the future of the microchip industry going to be Made in America? – TechCrunch

    What’s really the best Taylor Swift song? – TechCrunch

    What’s really the best Taylor Swift song? – TechCrunch

    The weekend’s best deals: Apple MacBook Air, Resident Evil bundle, and more

    The weekend’s best deals: Apple MacBook Air, Resident Evil bundle, and more

    A little taste of everything that’s out there

    A little taste of everything that’s out there

  • Gaming
    PUBG: Battlegrounds Has Grown By 80,000 Players Each Day Since Going Free-to-Play

    PUBG: Battlegrounds Has Grown By 80,000 Players Each Day Since Going Free-to-Play

    Video: Nintendo Explains How To Download Paid DLC In New Switch Online + Expansion Pack Guide

    Video: Nintendo Explains How To Download Paid DLC In New Switch Online + Expansion Pack Guide

    Like Netflix’s Day Shift? The director wants you to watch these movies

    Like Netflix’s Day Shift? The director wants you to watch these movies

    Madden NFL 23 – Everything To Know

    Madden NFL 23 – Everything To Know

    Random: Masahiro Sakurai Reminds Nintendo Fans About 3DS & Wii U eShop Closure Dates

    Random: Masahiro Sakurai Reminds Nintendo Fans About 3DS & Wii U eShop Closure Dates

    Japan’s My Summer Vacation series is now in English, thanks to Crayon Shin-chan

    Japan’s My Summer Vacation series is now in English, thanks to Crayon Shin-chan

  • Gear
    • All
    • Audio
    • Camera
    • Laptop
    • Smartphone
    Samsung says the Galaxy Z Fold 4 and Flip 4 will give it a leg up over rivals

    Samsung says the Galaxy Z Fold 4 and Flip 4 will give it a leg up over rivals

    Flashback: 15 years of Gorilla Glass on phones

    Flashback: 15 years of Gorilla Glass on phones

    Unannounced Motorola Moto E22i snatches FCC and TDRA certifications

    Unannounced Motorola Moto E22i snatches FCC and TDRA certifications

    Two legendary EQ rivals Compared — SonicScoop

    Two legendary EQ rivals Compared — SonicScoop

    The best Android gamepad (for now)

    The best Android gamepad (for now)

    Vivo V25 5G and V25e 4G global variants appear in live photos

    Vivo V25 5G and V25e 4G global variants appear in live photos

    Trending Tags

    • Best iPhone 7 deals
    • Apple Watch 2
    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • iOS 10
    • iPhone 7
    • Sillicon Valley
  • Computers
    Podcast #689 – Ryzen 7000 RAM Speed, NVIDIA’s Bad Quarter, Intel Arc Pro GPUs, Hackaday Prizes, Quantum Computing Fail and MORE

    Podcast #689 – Ryzen 7000 RAM Speed, NVIDIA’s Bad Quarter, Intel Arc Pro GPUs, Hackaday Prizes, Quantum Computing Fail and MORE

    Another SFF From Geekom, MiniAir 11

    Another SFF From Geekom, MiniAir 11

    Patriot Viper VPR400, 1TB Of RGBs

    Patriot Viper VPR400, 1TB Of RGBs

    All New Rescuezilla 2.4, And New-ish Redo Rescue Too!

    All New Rescuezilla 2.4, And New-ish Redo Rescue Too!

    Google Decided To Drop The Silly Answers, Not The Evil

    Google Decided To Drop The Silly Answers, Not The Evil

    Improving on Expandable CPU Cooling

    Improving on Expandable CPU Cooling

  • Applications
    Nintendo recap: Splatoon 3 amiibo and Splatfest announced, plus Waluigi bachelorette party explodes on Tiktok

    Nintendo recap: Splatoon 3 amiibo and Splatfest announced, plus Waluigi bachelorette party explodes on Tiktok

    Thanks, Apple, I hate the new battery percentage indicator

    Thanks, Apple, I hate the new battery percentage indicator

    Chinese Hackers Backdoored MiMi Chat App to Target Windows, Linux, macOS Users

    Chinese Hackers Backdoored MiMi Chat App to Target Windows, Linux, macOS Users

    The best ways to get started with Shortcuts on iPad

    The best ways to get started with Shortcuts on iPad

    New report says that Apple wanted to “build businesses” with Facebook

    New report says that Apple wanted to “build businesses” with Facebook

    Apple debuts first look at Brie Larson drama series Lessons in Chemistry

    Apple debuts first look at Brie Larson drama series Lessons in Chemistry

  • Security
    Vendor Bug Advisories Are Broken, So Broken

    Vendor Bug Advisories Are Broken, So Broken

    New exploits can bypass Secure Boot and modern UEFI security protections

    New exploits can bypass Secure Boot and modern UEFI security protections

    Software Supply Chain Chalks Up a Security Win With New Crypto Effort

    Software Supply Chain Chalks Up a Security Win With New Crypto Effort

    Meta Tests Encrypted Backups and End-to-End Encryption in Facebook Messenger

    Meta Tests Encrypted Backups and End-to-End Encryption in Facebook Messenger

    Xiaomi Smartphone Vulnerabilities Could Lead to Forged Payments

    Xiaomi Smartphone Vulnerabilities Could Lead to Forged Payments

    Novel Ransomware Comes to the Sophisticated SOVA Android Banking Trojan

    Novel Ransomware Comes to the Sophisticated SOVA Android Banking Trojan

No Result
View All Result
No Result
View All Result
Home Security

4 Simple Steps to a Modernized Threat Intelligence Approach

RealHacker Staff by RealHacker Staff
February 27, 2022
4 Simple Steps to a Modernized Threat Intelligence Approach
Share on FacebookShare on Twitter


Risk intelligence is a crucial a part of a company’s cybersecurity technique, however given how rapidly the state of cybersecurity evolves, is the normal mannequin nonetheless related?

Whether or not you are a cybersecurity professional or somebody who’s seeking to construct a risk intelligence program from the bottom up, this easy framework transforms the normal mannequin, so it might apply to the present panorama. It depends on the applied sciences out there in the present day and could be applied in 4 easy steps.

A Fast Take a look at the Risk Intelligence Framework
The framework we’ll be referencing right here known as the Intelligence Cycle, which breaks down into 4 phases:

Supply: Rapid7

That is the normal framework, however let’s take a deeper take a look at each step, replace them for the trendy day, and description the way to observe them in 2022.

To do that, we’ll leverage a use case of credential leakage for example. Credential leakage is an space organizations of any dimension ought to be aware of, making it an optimum selection for illustrating the way to construct an efficient risk intelligence program.

1. Set a course.
Step one on this course of is to set the course of your program by outlining what you are searching for and what questions you wish to ask and reply. To assist with this, you possibly can create Prioritized Intelligence Necessities, or PIRs, and a desired end result.

You must goal to be as express as attainable. Within the case of credential leakage, let’s set our PIR to establish login credentials which were uncovered to an unauthorized entity.

With this very particular PIR outlined, we are able to now decide a desired end result, which on this case can be forcing a password reset. That is essential, and later, we’ll see how the specified end result impacts how we construct this risk intelligence program.

2. Map out what information to gather.
As soon as you have set your PIRs and desired end result, you have to map out the sources of intelligence that can serve the course.

For this use case, let’s establish how risk actors achieve credentials. A couple of of the commonest sources embody the next: endpoints (normally harvested by botnets), third-party breaches, code repositories, posts on a discussion board/pastebin, and Darkish Internet black markets the place credentials are purchased and bought.

Mapping out these sources means that you can define the areas you have to deal with for evaluation.

3. Choose your method to evaluation.
You’ll be able to take an automatic or a guide method to evaluation. Automated evaluation includes leveraging AI or subtle algorithms that can classify related information into alerts of credential leakage, the place the emails and passwords could be extracted and pulled out. The choice method is to manually analyze the knowledge by gathering all the information and having the analysts in your staff assessment the information and resolve what’s related to your group.

The largest benefit of guide evaluation is flexibility. You’ll be able to put extra human sources, intelligence, and perception into the method to floor solely what’s related. However there are additionally disadvantages — this course of is far slower than automated evaluation.

With pace being crucial, automated evaluation is the perfect method. It doesn’t require analysts to kind via the information, and if threats are being robotically categorised, they will probably be robotically remediated.

Let’s check out this in follow: Say your algorithm finds an e mail and password talked about on a discussion board. The AI can classify the incident and extract the related info (e.g., the e-mail/username and password) in a machine-readable format. Then, a response could be robotically utilized, like drive resetting the password for the recognized person.

Automated evaluation is probably not the best choice in each state of affairs, however on this case it brings us closest to our desired end result.

4. Disseminate evaluation to take motion.
Historically, relating to the intelligence cycle and the dissemination of risk intelligence, we discuss sending alerts and reviews to the related stakeholders to assessment and take applicable motion.

However as our instance within the earlier part exhibits, the long run (and present state) of this course of is absolutely automated remediation. With this in thoughts, we should not simply talk about how we distribute alerts and data within the group — we must also take into consideration how we are able to take the intelligence and distribute it to safety units to robotically stop the upcoming assault.

For leaked credentials, this might imply sending the intelligence to the energetic listing to robotically drive password reset with out human intervention. This can be a nice instance of how shifting to an automatic resolution can dramatically scale back the time to remediation.

As soon as once more, let’s return to our PIR and desired end result; we wish to drive the password reset earlier than the risk actor makes use of the password. Velocity is vital, so we must always positively automate the remediation. We want an answer that takes the intelligence from the sources we have mapped out, robotically produces an alert with the knowledge extracted, and robotically remediates the risk to cut back threat as quick as attainable.

That is how detection and response ought to look in 2022.

Concerning the Creator

alon-arvatz_(1).png

Alon Arvatz joined Rapid7 in July 2021 following its acquisition of IntSights Cyber Intelligence, which he co-founded and led as Chief Product Officer. Alon is now a key contributor to the Rapid7 risk intelligence product street map, together with product improvement, risk analysis, and intelligence gathering operations.

Previous to founding IntSights, Alon was co-founder and CEO of Cyber-College, an academic program providing cybersecurity-related programs to youngsters. Alon is a veteran of an elite cybersecurity intelligence unit inside the Israel Protection Forces (IDF), the place he led and coordinated world cyber-intelligence campaigns.



Source link

Related

Tags: ApproachintelligenceModernizedsimpleStepsThreat
RealHacker Staff

RealHacker Staff

Recent Posts

  • PUBG: Battlegrounds Has Grown By 80,000 Players Each Day Since Going Free-to-Play
  • Video: Nintendo Explains How To Download Paid DLC In New Switch Online + Expansion Pack Guide
  • Samsung says the Galaxy Z Fold 4 and Flip 4 will give it a leg up over rivals
  • Flashback: 15 years of Gorilla Glass on phones
  • Unannounced Motorola Moto E22i snatches FCC and TDRA certifications
  • Two legendary EQ rivals Compared — SonicScoop
  • Twilio gets hacked, teens ditch Facebook, and SpaceX takes South Korea to the moon – TechCrunch
  • The best Android gamepad (for now)

Follow Us

Categories

  • Applications
  • Audio
  • Camera
  • Computers
  • Gaming
  • Gear
  • Laptop
  • Metaverse
  • Microsoft
  • Photography
  • Review
  • Security
  • Smartphone
  • Uncategorized

Recent News

PUBG: Battlegrounds Has Grown By 80,000 Players Each Day Since Going Free-to-Play

PUBG: Battlegrounds Has Grown By 80,000 Players Each Day Since Going Free-to-Play

August 14, 2022
Video: Nintendo Explains How To Download Paid DLC In New Switch Online + Expansion Pack Guide

Video: Nintendo Explains How To Download Paid DLC In New Switch Online + Expansion Pack Guide

August 14, 2022
  • DMCA
  • Disclaimer
  • Terms and Conditions
  • Cookie Privacy Policy
  • Privacy Policy
  • Contact
  • Advertise

© 2019 - theme develop by real hacker news.

No Result
View All Result
  • Home
  • Review
  • Gaming
  • Gear
  • Computers
  • Applications
  • Security

© 2019 - theme develop by real hacker news.

error: Content is protected !!