Combining Threat Intelligence Platforms & Sandboxes for Efficient Security Operations – A DFIR Guide

Analysts use them to execute potentially malicious software without exposing their systems to the risk of infection. Sandbox analysis aims to study malware’s operation and understand its tactics, techniques, and procedures (TTPs), which is essential for developing effective countermeasures.   One example of such a service is ANY.RUN’s cloud-based sandbox.

Source: GBHackers

 


Date:

Categorie(s):