Botconf Author Listing

John Bambenek


Last known affiliation: Netenrich, Inc.

Date: 2016-12-01
Tracking Exploit Kits
John Bambenek 🗣

Abstract (click to view)

Despite the ever growing number of malware families, botnets and criminal campaigns; there is only a defined few means by which malware can find its victims. This talk will be a deep dive into tracking exploit kits and the infrastructure behind them. Starting with using our own telemetry and Microsoft’s Malicious URL feed from their Bing crawler, a global visibility has been established into exploit kit activity and using this starting point, we will cover how to track and differentiate exploit kits, their payloads and campaigns and uncovering their backend infrastructure.

Slides Icon
PDF
Video
Date: 2015-12-02
Takedowns: case studies and what we all could be doing better
John Bambenek 🗣

Abstract (click to view)

We have all seen the splashy headlines of large threats being subjected to takedowns only to re-emerge days (or hours) later. A few takedowns, however, have achieved long term results. This talk will focus on how recent successful operations were accomplished, what tools are the most helpful and what we all can do to make takedowns more frequent and more successful.

Slides Icon
PDF
Video
Scroll to Top