BEGIN:VCALENDAR
VERSION:2.0
PRODID:-//Cloud Native Now - ECPv5.16.4//NONSGML v1.0//EN
CALSCALE:GREGORIAN
METHOD:PUBLISH
X-WR-CALNAME:Cloud Native Now
X-ORIGINAL-URL:https://cloudnativenow.com
X-WR-CALDESC:Events for Cloud Native Now
BEGIN:VTIMEZONE
TZID:America/New_York
BEGIN:DAYLIGHT
TZOFFSETFROM:-0500
TZOFFSETTO:-0400
TZNAME:EDT
DTSTART:20240310T070000
END:DAYLIGHT
BEGIN:STANDARD
TZOFFSETFROM:-0400
TZOFFSETTO:-0500
TZNAME:EST
DTSTART:20241103T060000
END:STANDARD
END:VTIMEZONE
BEGIN:VEVENT
DTSTART;TZID=America/New_York:20240207T110000
DTEND;TZID=America/New_York:20240207T120000
DTSTAMP:20260826T005426
CREATED:20240104T050016Z
LAST-MODIFIED:20240207T174715Z
UID:158036-1707303600-1707307200@cloudnativenow.com
SUMMARY:REDIScovering HeadCrab - A Technical Analysis of a Novel Malware and the Mind Behind It
DESCRIPTION:HeadCrab is a highly elusive and sophisticated malware created by an advanced threat actor who utilized custom-made Redis Modules and APIs to build a full-scale malicious framework. Since 2021\, the highly advanced malware has deployed several highly technical novel techniques which allowed it to infiltrate servers worldwide. It was evident that the threat actor made operational security a top priority\, with several hiding techniques including specifically bypassing security solutions. \nIn this session\, we will share with you a rare and fascinating story of the attack\, the tactics we employed to communicate with the attacker\, and our technical analysis of both the malware and the persistent tool. We will delve into the malware’s 50+ malicious capabilities\, including its use of custom Redis commands as communication methods\, overwriting Redis commands to avoid detection and fileless attacks to remain hidden. We will also disclose never-before-seen information about a new variant of the malware and the changes the threat actor made to avoid detection. \nFurthermore\, we will walk you through our investigation of the command-and-control infrastructure of both variants\, which led to the discovery that over 2\,000 compromised servers were being used as a botnet to help the attacker stay anonymous. \nJoin us for a captivating and insightful session\, getting a glimpse into this advanced operation and the mind behind it. \nKey Takeaways: \n\nHeadCrab Sophistication: How this advanced malware was crafted with custom tools for stealthy operations.\nEvasion Techniques: Insights into the unique methods used to evade detection and maintain a low profile on infected servers.\nGlobal Impact: Learn about the extensive reach of HeadCrab malware\, which commandeered a botnet of over 2\,000 servers\, showcasing its capacity as a pervasive cybersecurity threat.
URL:https://cloudnativenow.com/webinar/rediscovering-headcrab-a-technical-analysis-of-a-novel-malware-and-the-mind-behind-it/
LOCATION:Webinar\, Boca Raton\, FL\, 33487\, United States
ATTACH;FMTTYPE=image/png:https://cloudnativenow.com/wp-content/uploads/2024/01/OnDemand-2024.02.07-AquaSecurity-Landing-Page-1540x660-CNN.png
END:VEVENT
END:VCALENDAR