search menu icon-carat-right cmu-wordmark

Intelligence Driven Malware Analysis (IDMA) Malicious Profiling

January 2016 Presentation
Casey Kahsen (Northrop Grumman Corporation)

This presentation discusses using behavioral markers of malware can be used as a focal point for malware analysis that can augment/enhance threat intelligence and information sharing.

Publisher:

CERT Division

Abstract

The intelligence driven malware analysis (IDMA) methodology sought to fuse products of malware analysis and threat intelligence. Industry trends focus on indicators that are less actionable and centered on properties of the malware itself. This FloCon 2016 presentation suggests that the behavioral markers of malware can be used as a focal point for malware analysis that can augment and enhance threat intelligence and information-sharing initiatives.