En esta sección se ofrecen contenidos de interés para los profesionales que participan en la investigación de vulnerabilidades, análisis de amenazas y eventos de ciberseguridad, forense digital, hacking ético o pentesting, investigador del fraude o analista de ciberinteligencia.

Threat analysis study: Hive

Posted on 20/12/2021, by
INCIBE (INCIBE)
imagen de estudios de amenazas
The malicious code of the ransomware known as ‘Hive’ represents a threat to all users, as it implements encryption functionalities on the information in an infected computer, making simple recovery of the data impossible. This threat attempts to use extortion to recover the information, demanding a payment and threatening publication of part of the stolen information on a blog through the network Tor if the payment is not forthcoming.

EVOLVE: organisations’ capacity to adapt and improve their services after a cyberattack

Posted on 25/11/2021, by
INCIBE (INCIBE)
CII: evolve measurement
All organisations must be prepared so that, after the impact of a cyberattack, it may change, improve and adapt its processes and services. For this reason, it is necessary to protect the main business processes using a set of tasks that allow the organisation to evolve after a serious incident to redesign its strategies and minimise the possible impact of future cyberattacks

Threat analysis study: Anatsa

Posted on 05/07/2021, by
INCIBE (INCIBE)
image of threat studies
Anatsa is a banking Trojan designed for Android devices that has become particularly relevant since its discovery in January 2021. Throughout the study, a detailed technical analysis of the threat is carried out using a sample of the malicious code in question to show how this malware behaves and the possibilities it offers.

DrDoS: characteristics and operation

Posted on 22/04/2021, by
INCIBE (INCIBE)
DrDoS: characteristics and operation
This article reviews the origin and development of the best-known types of denial-of-service attacks, placing special emphasis on Reflected Distributed Denial of Service attacks, analysing their main characteristics, operation, and consequences, as well as the measures necessary to mount a good defence against them.

Threat analysis studies: Mekotio, FluBot, Cring and WannaMine

Posted on 15/04/2021, by
INCIBE (INCIBE)
Threat analysis studies image
Various studies with threat analysis or malware distribution campaigns affecting Spain and identified through incident management undertaken by INCIBE-CERT. The aim is to increase knowledge of the more technical details and characteristics of the threats so that organisations can implement appropriate detection and protection measures.