ENISA Threat Landscape 2023

ENISA Threat Landscape 2023

Yeap, it is this time of the year 😍 ! ENISA Threat Landscape 2023 has just been published! The report contains lots of great content and the recommendation here is to focus on the parts that are most relevant/interesting for you. Kudos to all the authors of the report and all who contributed to this deliverable.

Continue reading “ENISA Threat Landscape 2023”

SANS DFIR Prague 2023

SANS DFIR Prague 2023

On 1 October 2023, I attended SANS Institute DFIR Europe Summit in Prague. It was my first time participated in this conference and I really enjoyed the content shared. I loved the presentation from Simone Kraus (Orange) on “Threat Informed Defense & Detection Engineering with MITRE ATT&CK” and the one from Chris Doman (Cado Security) presenting on “A New Perspective on Resource-Level Cloud Forensics”.

From 2 to 7 October 2023, I did my first co-teach for SANS Cyber Threat Intelligence FOR578 course. I would like to thank all the students for their active participation and the perspectives they brought to the class. Moreover, I would love to thank SANS EMEA people for all their support.

Continue reading “SANS DFIR Prague 2023”

2nd ENISA Cybersecurity Market Analysis Conference

2nd ENISA Cybersecurity Market Analysis Conference

On 28th September, 2023, I joined the Cybersecurity Market Analysis Conference organized by the European Union Agency for Cybersecurity (ENISA) in Heraklion, Crete, Greece. The objective of the conference was to promote a policy debate in the area of cybersecurity market analysis.

I had the pleasure to moderate a panel on the “Threat Landscape and Industry Response”. The panel comprised of four panelists that provided their insights on how the threat landscape and emerging technologies impact product security and development. Mikko Karikytö (Ericsson) , Siddhartha Rao (SAP ), Natalie Kilber (HARMAN International ), and Mark Woods (Splunk ).

Continue reading “2nd ENISA Cybersecurity Market Analysis Conference”

Setting Your CTI Process In Motion

Setting Your CTI Process In Motion

On 7 December 2022, ENISA CTI-EU 2022 took place in Brussels. I had the pleasure to present about putting how CTI teams can put their CTI process in motion. The problem statement was how CTI teams track the work they do and manage the CTI knowledge they produce. I elaborated on the value of workflow and case management for CTI teams and some basic ingredients for success.

Continue reading “Setting Your CTI Process In Motion”

ENISA Threat Landscape 2022 – Threat Actor Trends

ENISA Threat Landscape 2022 – Threat Actor Trends

On 3 November 2022, ENISA published its Threat Landscape 2022 report, which is the annual report of the EU Agency for Cybersecurity on the state of the cybersecurity threat landscape. This is the 10th edition of the ETL report and covers a reporting period from July 2021 to July 2022. ETL report is an annual must-read for most cyber security professionals (at least) within the EU. The report might look long at first glance (~150 pages), but it is split into separate sections:

Continue reading “ENISA Threat Landscape 2022 – Threat Actor Trends”

ENISA CTI-EU 2022 Conference

ENISA CTI-EU 2022 Conference

ENISA organises the fourth edition of the CTI-EU event on 7 December 2022 in Brussels. This is a great opportunity for the CTI Community to review the most relevant topics on the domain. The main objective of the CTI-EU event is to bring experts, researchers, practitioners and academics together to promote the dialogue and envision the future of Cyber Threat Intelligence for Europe. The participation is free of charge.

Continue reading “ENISA CTI-EU 2022 Conference”

FIRST CTI Symposium 2022 Recap

FIRST CTI Symposium 2022 Recap

All good things come to an end! FIRST CTI Symposium 2022 took place on 1, 2, and 3 of November 2022 and was a BLAST! If I chose one word to summarise what I felt during the conference days, I would say COMMUNITY is the right one. 300 CTI people from all over the world got connected after 2,5 years of work and virtual conferences from their home office.

Continue reading “FIRST CTI Symposium 2022 Recap”

ENISA’s Ad-Hoc Working Group on Cyber Threat Landscapes

I am honored to have been appointed as one of the 18 expert members of the European Union Agency for Cybersecurity (ENISA) Ad-hoc Working Group on Cyber Threat Landscapes. The group will offer assistance and expertise in designing, updating, and reviewing CTI methodologies, including the annual ENISA Threat Landscape Report. I am looking forward to work with the rest of the Working Group’s members as well as with ENISA people.

Continue reading “ENISA’s Ad-Hoc Working Group on Cyber Threat Landscapes”

Top 25 CTI Presos for 2020 (pandemic version)

Hey folks! 2020 was a year to remember mostly because of non-CTI related stuff. Every year I write a blog post about my top CTI presentations but this time I am a little bit late (aren’t we still in 2020 mode in any case?).

Due to the pandemic, we had the opportunity to participate in many online conferences/summits and watch lots of presentations. See below (in random order) the CTI presentations I enjoyed most, learned something that I applied to my day-to-day work, and gave me insights into cyber threats and CTI practices.

Hopefully this year we will have more F2F conferences and interaction. Enjoy and stay safe!

Continue reading “Top 25 CTI Presos for 2020 (pandemic version)”