{"id":7,"date":"2013-06-17T09:42:04","date_gmt":"2013-06-17T09:42:04","guid":{"rendered":"http:\/\/www.3lectrik.com\/normanshark\/?page_id=7"},"modified":"2013-10-30T15:20:37","modified_gmt":"2013-10-30T22:20:37","slug":"automated-malware-analysis","status":"publish","type":"page","link":"https:\/\/www.3lectrik.com\/normanshark\/threat-protection\/automated-malware-analysis\/","title":{"rendered":"Automated Malware Analysis"},"content":{"rendered":"<h3>Malware Analysis and the Cyber threat landscape<\/h3>\n<p>Enterprise IT organizations face a cyber threat landscape that is constantly changing, and rarely for the better. The complexity of attacks on IT systems grows exponentially as the number of systems and interconnections between them increases.\u00a0 Additionally, the types of attacks from malicious software (malware) are changing, ranging from the more \u2018traditional\u2019 (viruses\/worms) to newer targeted attacks such as spear-phishing and advanced persistent threats (APT). With no technology immune to cyberattack, and with many ways to break into a network, enterprise IT organizations face an uphill battle in attempting to keep their systems and data safe from advanced threats and targeted attacks<\/p>\n<p>Malware analysis has been part of this attempt to keep IT entities safe for more than a decade.\u00a0 An organization can reverse engineer any sample(s) they obtain to get an idea of what the attacker is trying to accomplish, and by what methods.\u00a0 Traditionally this has been the purview of the highly technical, requiring arcane computer knowledge and high levels of patience and exactitude.\u00a0 Such difficulties may not be insurmountable with the proper people and equipment, and the benefits to the organization are numerous: indication of what vulnerabilities were exploited in the attack, an idea of what a particular attacker was attempting to do (theft, disruption, etc.), and a complete blueprint of the cyber-weapon(s) used in the attack.\u00a0 By examining these indicators of compromise (IoC), the enterprise IT organization can gird their defenses against this attack and attacks of a similar nature.<\/p>\n<h3>Malware analysis &#8211; a specialized skillset<\/h3>\n<p>Analyzing and\/or reverse engineering malware requires a highly specific skill-set, and while the number of people with malware analysis skills is increasing as the field matures, that increase does not currently keep pace with the ever-growing number and complexity of cyberattacks. And the volume of attacks is expected to continue their rapid growth.\u00a0 Without the right type and number of staff, enterprises face the risk of being unable to address the issue at its most basic level, and certainly not as it advances.\u00a0 This risk is especially onerous, as being unable to investigate incidents or respond properly to attacks leaves the organization open to a host of issues.\u00a0 Additionally, when it is discovered that a particular firm is vulnerable, this information may be shared publicly, thereby compounding the initial problem.<\/p>\n<p>Malware analysis provides the critical information you need to effectively respond to malicious software threats that elude traditional defenses.<\/p>\n<ul>\n<li>Detect suspicious files on your network<\/li>\n<li>Determine a suspect file\u2019s capabilities<\/li>\n<li>Identify all infected machines and files<\/li>\n<li>Understand exactly how the breach occurred<\/li>\n<li>Measure and contain any damage done<\/li>\n<li>Remediate to reduce future vulnerabilities<\/li>\n<\/ul>\n","protected":false},"excerpt":{"rendered":"<p>Malware Analysis and the Cyber threat landscape Enterprise IT organizations face a cyber threat landscape that is constantly changing, and rarely for the better. The complexity of attacks on IT systems grows exponentially as the number of systems and interconnections between them increases.\u00a0 Additionally, the types of attacks from malicious software (malware) are changing, ranging [&hellip;]<\/p>\n","protected":false},"author":15,"featured_media":0,"parent":5,"menu_order":0,"comment_status":"open","ping_status":"open","template":"","meta":{"footnotes":""},"class_list":["post-7","page","type-page","status-publish","hentry"],"jetpack_shortlink":"https:\/\/wp.me\/P5TlPb-7","jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/www.3lectrik.com\/normanshark\/wp-json\/wp\/v2\/pages\/7","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.3lectrik.com\/normanshark\/wp-json\/wp\/v2\/pages"}],"about":[{"href":"https:\/\/www.3lectrik.com\/normanshark\/wp-json\/wp\/v2\/types\/page"}],"author":[{"embeddable":true,"href":"https:\/\/www.3lectrik.com\/normanshark\/wp-json\/wp\/v2\/users\/15"}],"replies":[{"embeddable":true,"href":"https:\/\/www.3lectrik.com\/normanshark\/wp-json\/wp\/v2\/comments?post=7"}],"version-history":[{"count":4,"href":"https:\/\/www.3lectrik.com\/normanshark\/wp-json\/wp\/v2\/pages\/7\/revisions"}],"predecessor-version":[{"id":112,"href":"https:\/\/www.3lectrik.com\/normanshark\/wp-json\/wp\/v2\/pages\/7\/revisions\/112"}],"up":[{"embeddable":true,"href":"https:\/\/www.3lectrik.com\/normanshark\/wp-json\/wp\/v2\/pages\/5"}],"wp:attachment":[{"href":"https:\/\/www.3lectrik.com\/normanshark\/wp-json\/wp\/v2\/media?parent=7"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}