Bugcrowd Acquires Mayhem Security to Bring Human-Augmented AI Automation to Security Testing Read More

Profiling the Attacker – Using Offender Profiling In SOC Environments

 

It’s been said ‘‘Intrusion analysis is as much about tcpdump as astronomy is about telescopes”. Understanding who is attacking your or a customer’s network and why is just as important as analyzing the packets on it. This slot will focus on a technical offender profiling framework that can be used to build a knowledge base on malicious actors. This talk will delve into the following areas: – Building an information classification for your assets – Attack significance plotting – Attack factor comparison analysis – Discerning motive – Attacker kill chain analysis – Malicious actor profile checklist – Naming conventions for malicious actors

More resources

Security Flash

Security flash: CVE-2025-55182 UPDATE

Watch Now
Security Flash

Security flash: CVE-2025-55182

Watch Now
Security Flash

Security flash: The Hacklore Project

Watch Now

Get Started with Bugcrowd

Every minute that goes by, your unknown vulnerabilities leave you more exposed to cyber attacks.