MalwareNet Project

Post on 18-Nov-2014

402 Views

Category:

Technology

2 Downloads

Preview:

Click to see full reader

DESCRIPTION

Presented by SecurityXploded team in our quarterly Cyber security meet. visit: http://www.securitytrainings.net for more information.

Transcript

SecurityXploded Team

MalwareNet.com

Crowd Sourced Malware Analysis and Intelligence Portal.

© SecurityXploded Research Group

Mission!

1. Central Repository for Malware

analysis.

2. API integration - accessible to

everyone/product/tool.

3. Community collaboration

© SecurityXploded Research Group

MalwareNet Components

❖ Search

❖ Submit Analysis

❖ Request Analysis

❖ Trust Key

❖ API

© SecurityXploded Research Group

MalwareNet Search

❖ Search the sample analysis reports.

❖ Download reports

❖ Search fields (few may not be available yet)

❖ SHA256

❖ Domain/IP

❖ Malware family/campaign name

❖ Entire analysis report*

© SecurityXploded Research Group

Submit Analysis

❖ Anonymous submission

❖ currently we support only text submission.

❖ Use reference section to add more resources (eg:

your blog etc.)

❖ Pcap/Sample upload is optional.

© SecurityXploded Research Group

Submit Analysis (Web)

Request Analysis

❖ Submit sample - request for analysis.

❖ Anonymous submission

❖ Anyone can download the samples

❖ Anyone can submit the analysis

❖ Our dedicated analysts will work on this for free. :)

❖ Send private/confidential analysis requests to team@securityxploded.com (this is not free)

© SecurityXploded Research Group

Request Analysis (Web)Thanks to Nagareshwar for cool logo and webUi!

Trust Key❖ MalwareNet is based on the concept of virtual trusted

network.

❖ Trust key is optional in web submission but mandatory in API submission

❖ We recommend use the trust key for all submissions (submit analysis or request analysis) because the submissions using trust key will be given priority.

❖ Request trust key: send an email to key@securityxploded.com with "Trust key" subject (without quotes).

© SecurityXploded Research Group

API❖ API is free and accessible to everyone.

❖ currently we support:

❖ submit analysis

❖ Request analysis

❖ we are working on search

❖ Download the client and feel free to integrate it in your analysis tools.

❖ Trust key is mandatory for API submission.

© SecurityXploded Research Group

Submit Analysis (API)• Json for-

mat

Request Analysis (API)• Json format

• Request Trust Key: send an email to key@securityxploded.com with

• subject – Trust key

MawareNet.com

❖ Use the API, integrate it with your analysis tools

❖ We will also release some tools to automate the analysis process.

❖ For any questions/queries please email to team@securityxploded.com

© SecurityXploded Research Group

Thank You!

© SecurityXploded Research Group

top related