Profiling hackers: real data, real experiences, wrong myths

Raoul Chiesa UNICRI/ISECOM

  download slides (PDF)

Imagine being able to preview an attacker's next move based on the traces left on compromised machines. That's the aim of the Hacker's Profiling Project (HPP), an open methodology that hopes to enable analysts to work on the data (logs, rootkits and any code) left by intruders from a different point of view, providing them with a profiling methodology that will identify the kind of attacker and therefore his modus operandi and potential targets.

This paper will cover the following:

  • InfoSec - Information Security - what does it mean?
  • Cybercrime: how history can help us
  • Profiling the enemy: looking into the hacker's world
  • HPP: the Hacker's Profiling Project
  • What has changed?
  • References & books you should read


Poll

Do you use the same password(s) across multiple websites?
I use the same password for all sites
I have a number of passwords but use the same for some sites
I use a different password for each site
I don't sign up to any sites that require a password

Leave a comment
View 4 comments

Jobs Recruit Sidebar

VB2010

VB2010 VB2010 will take place 29 September-1 October 2009 at the Westin Bayshore, Vancouver, BC, Canada. Early bird discount available until 15th June 2010.
Virus Bulletin currently has 190,375 registered users.