Special: Coordinated Release of Detection Rules for CobaltStike Abuse episode artwork

EPISODE · Nov 17, 2022 · 20 MIN

Special: Coordinated Release of Detection Rules for CobaltStike Abuse

from Cloud Security Podcast by Google · host Anton Chuvakin

Guest: Greg Sinclair, Security Engineer @ Google Cloud Topics: Could you tell us a bit about your background and how you ended up here at Google? Also, tell us about your team here? We're very excited about the release of the CobaltStrike rules. Could you share more about what they are looking for and second why this is so valuable? How did CobaltStrike come to be so widely used by bad guys? When you were doing this research what was the most surprising thing you uncovered? Could you tell us about the coordinated disclosure aspects of this work? In the past you've contributed research to our Threat Horizons reports, could you tell us about that? Resources: Making CobaltStike harder for threat actors to abuse blog CobaltStrike YARA-L rules CobaltStrike site "Cobalt Strike Usage Explodes Among Cybercrooks" Google Cybersecurity Action Team Threat Horizons Report #4 Is Out! Detection as Code? No, Detection as COOKING!

Episode metadata supplied by the publisher feed · Published Nov 17, 2022

Embed this episode

Ready to play

Special: Coordinated Release of Detection Rules for CobaltStike Abuse

0:00 20:55

No transcript for this episode yet

We transcribe on demand. Request one and we'll notify you when it's ready — usually under 10 minutes.

No similar episodes found.

No similar podcasts found.

Frequently Asked Questions

How long is this episode of Cloud Security Podcast by Google?

This episode is 20 minutes long.

When was this Cloud Security Podcast by Google episode published?

This episode was published on November 17, 2022.

Can I download this Cloud Security Podcast by Google episode?

Yes. Use the download control on the episode player to save the publisher-provided media file.
URL copied to clipboard!