Fighting Cyberattacks Through Adversary Behavior Analysis: Insights From Our Research Team
Information
ENGLISH SESSION
Understanding your cyber adversaries is important in strengthening your organization's defenses against evolving threats in the digital landscape. In traditional warfare as well as in cybersecurity, knowledge of enemy tactics, strategies, and motivations is crucial for victory.
We built a honeynet that is composed of several RDP Windows servers exposed on the cloud. Over a span of three years, this infrastructure collected a staggering dataset, encompassing over 190 million events, 100 hours of video footage, and 470 files procured from threat actors. This wealth of data facilitated a comprehensive analysis of attacker behavior.
During this presentation panel, the GoSecure research team will present three distinct aspects of attacker behavior, shedding light on their modus operandi across various dimensions. The short presentations will encompass (1) their preferences and tendencies concerning Command-Line Interface versus Graphical User Interface usage, (2) their browser preferences, and (3) the intricate geopolitical nuances associated with their IP addresses of origin.
By examining these multifaceted aspects of attacker behavior, we aim to provide comprehensive insights into the tactics, strategies, and motivations driving malicious actors in the cyber landscape.



