InfoTechTarget and Informa Tech's Digital Businesses Combine.

Together, we power an unparalleled network of 220+ online properties covering 10,000+ granular topics, serving an audience of 50+ million professionals with original, objective content from trusted sources. We help you gain critical insights and make more informed decisions across your business priorities.

Detecting Trickbot with Splunk

Presented by

Rod Soto | Principal Security Research Engineer, Splunk Teoderick Contreras | Principal Security Research Engineer, Splunk

About this talk

Who Should Attend: Splunk Administrators, Security Analysts, SOC Managers Trickbot is a very popular crimeware carrier associated with recent ransomware campaigns. It is a trojan that has gained popularity from being effective at infecting and propagating botnets – one of the main financial drivers of cyber criminal groups. The effectiveness of trickbot crimeware comes from its stealthiness and versatility in installing payloads for further lateral movement and post-exploitation profit-driven activities such as cryptocurrency, ransomware, or banking fraud. But don’t worry! The Splunk Security Research team has developed an analytic story targeting Trickbot TTPs to help you detect them in your environment and respond immediately. Tune in to learn: -How Trickbots, botnets, and webinjects work together in a malicious cyber campaign -How to utilize pre-built searches to detect Trickbots in your environment -How to utilize pre-built automated playbooks to respond to Trickbots
Splunk Inc.

Splunk Inc.

43736 subscribers340 talks
Splunk Webinars and Videos
Splunk is helping to build a safer and more resilient digital world by equipping customers with the unified security and observability platform they need to keep their organization securely up and running — no matter what digital disruptions come their way.
Related topics