YoVDO

Beyond AV - Detection-Oriented File Analysis

Offered By: Security BSides San Francisco via YouTube

Tags

Security BSides Courses Cybersecurity Courses Data Interpretation Courses Threat Detection Courses File Analysis Courses

Course Description

Overview

Explore detection-oriented file analysis systems and their role in modern threat detection through an in-depth examination of Strelka, Target's open-source static file analysis system. Learn about the overview of these systems, Strelka's features and design, and discover how to leverage the data produced to identify malicious files within enterprise environments. Gain insights into the project's structure, including its data architecture and VB code implementation, and understand how it aligns with the attack matrix for comprehensive threat detection.

Syllabus

Intro
Definition
Strelka
Strelka Data Structure
VB Code
Attack Matrix


Taught by

Security BSides San Francisco

Related Courses

Early Detection through Deception
YouTube
Hack for Show, Report for Dough - Brian King
YouTube
Blue Teamin on a Budget of Zero - Kyle Bubp
YouTube
Windows Event Logs - Zero to Hero
YouTube
Weaponizing Splunk - Using Blue Team Tools for Evil
YouTube