Canary in the Cloud Mine: Stealthy Tripwires to Detect Post-Breach Activity


Posted on in Presentations

Advanced and evolving cloud attacks (Blizzard) make breach seem inevitable. This session describes a deception detection approach using canaries, with a bit of honey and razors, to implement stealthy tripwires to provide low-FP detections for post-breach lateral movement and privilege escalation. Attendees will take away techniques to apply to their environments and security tools.

Access This and Other RSAC Conference Presentations with Your Free RSAC Membership

Your RSAC Membership also includes AI-powered summaries, mind maps, and slides for Conference presentations, Group Discussions with experts, and more.

Watch Now >>
Participants
Jenko Hwong

Speaker

Threat Research, WideField Security


Share With Your Community