Cyber Shield Up: They Shall Not Pass (Presentation @ UoC)

Cyber Shield Up: They Shall Not Pass (Presentation @ UoC)

I am beyond grateful for the opportunity to have presented “Cyber Shield Up: They Shall Not Pass” at the University of Crete, Department of Computer Science. A huge thank you to Professor Evangelos Markatos for the invitation and for fostering such an engaging and curious academic environment.

Continue reading “Cyber Shield Up: They Shall Not Pass (Presentation @ UoC)”

On Sea Turtle campaign targeting Greek governmental organisations

Screenshot 2020-02-25 at 13.58.58

On 23 February 2020, greek news media reported that Greece Prime Minister’s office, the Ministry of Foreign Affairs, the National Intelligence Service and the Greek Police were the targets of an international cyber espionage campaign in April 2019 named Sea Turtle. This is one of the most significant cyber espionage activities against Greece that is publicly known.  Sea Turtle campaign has been initially reported by Cisco Talos Intelligence Group last year.

See the below timeline: Continue reading “On Sea Turtle campaign targeting Greek governmental organisations”

Top 20 CTI Presentations for 2019

Happy New Year everyone! 2019 was just another interesting year in CTI. Every year I use to list my top 20 CTI presentations. See below the ones I enjoyed most,  I learned something that I used in my day to day work, and gave me insights into cyber threats. I hope you enjoy them and I am looking forward to seeing your favourite ones. Enjoy and let’s have a chat  about them (and about yours) during an upcoming CTI event in 2020! Continue reading “Top 20 CTI Presentations for 2019”

My Top 20 CTI/DFIR Talks for 2018

Another year has passed and lots of good CTI/DFIR stuff have been presented! I took some time to watch again some of my favourite talks within 2018 and list my favourite 20 ones. The list provided below has a CTI focus, however some of the most representative talks related to blue team/red team as well as ICS have been selected. I hope you enjoy it! Continue reading “My Top 20 CTI/DFIR Talks for 2018”

CrowdStrike’s 2018 Mid-Year Review

During the past week CrowdStrike published its 2018 Mid-Year Review call “Observation from the front lines of threat hunting“. This report provides insights, trends and details on today’s most sophisticated cyber attacks observed by CrowdStrike Falcon OverWatch team.

Some interesting points of the report include:

Continue reading “CrowdStrike’s 2018 Mid-Year Review”

On reported APT trends

During the past years, there has been a lot of public reporting on APT activity of group with Russia and China nexus. However, it has been observed that more and more countries have developed such advanced capabilities and their activity is captured and reported by the vendors and mainstream media.

FireEye’s list of sophisticated actors and naming conventions looks like this:

Continue reading “On reported APT trends”