renato_marinho

Renato Marinho, CISSP, GCFA, CRISC, LPIC2, PMP
Chief Research Officer
Morphus Labs

Exploring a P2P Transient Botnet - From Discovery to Enumeration

In this talk, I’ll present how we find out and enumerate an IOT Botnet formed by 8,300 bots/day spread over 178 countries by analyzing and exploiting its C&C protocol using crawling and node-injection techniques
.

Learning objectives:
1. Learn method and techniques that can be used to analyze and enumerate similar botnets;
2. Capture and analyze C&C traffic;
3. Use bigdata tools to store and index botnet related information.