Latest post on our blog: Kryptos Logic Research
ATTACK FORENSICS
The urgency to determine whether attacks are related to hacktivism, targeted campaigns, or commodity threats is crucial. The increasing number of emerging threats coupled with the advent of new system architectures, vulnerabilities, and exponentially growing malware mutations it becomes clear understanding the full scope of a breach is non-trivial.
What We Do
Our approach is to analyze the root cause and extent the breach. Often this can be accomplished with attack forensics.
Quantify the Scope
- What systems have been compromised?
- How long has the threat been present?
- Who are the attackers?
- Are you currently being infiltrated?
- Has data been exfiltrated?
Dismantle the Threat
- Which tools were used?
- What is the capability of the attack?
- Are they looking for specific intel?
- How did they get in?
Attack Surface Review
Our Security Assessment services combined with ZTIMS Reconnaissance is utilized to assess probable attack vectors. Once exploits are discovered either by logs, malware analysis, or digital evidence attack patterns are cross validated.
Malware Analysis
High volume files such as PDF, office documents, and executables through ZTIMS Detontation Vault to detect for the presence of attacks. ZTIMS Sentinel agents simultaneously detect threats active within your network. Discovered malware is analyzed for capabiity and used to extract additional Indicators of Compromise.
Threat Discovery
Analysis from ZTIMS subsystems are carefully orchestrated into ZTIMS VanGuard. The resulting data is used traverse network systems and devices to discover threats.
Assess the Threat Now
Organizations are usually notified by third parties such as law enforcement agenices about a compromise. Don't be the last to know and check if your organization has been a victim of hacking or other types of malicious digital attacks.
