SANS Digital Forensics and Incident Response

SANS Digital Forensics and Incident Response

Creator
0 followers

DFIR educational talks/labs; cross-over with e‑discovery workflows

Stay Ahead of Ransomware Livestream: May 2026
VideoMay 6, 2026

Stay Ahead of Ransomware Livestream: May 2026

The May 2026 SANS Stay Ahead of Ransomware livestream, hosted by Ryan Chapman and Mary Degrazia, dissected the latest ransomware and cyber‑extortion trends using the Mandian M‑Trends 2026 report, which analyzes over 500,000 incident hours from 2025. Key findings show ransomware...

By SANS Digital Forensics and Incident Response
Stay Ahead of Ransomware - Initial Access via Evolving Social Engineering
VideoApr 8, 2026

Stay Ahead of Ransomware - Initial Access via Evolving Social Engineering

The April 2026 SANS "Stay Ahead of Ransomware" livestream focused on evolving social‑engineering techniques that grant attackers initial access. Hosts Ryan Chapman and Mary Degrazia examined two prominent vectors: the ClickFix scheme, which lures users to a fake capture page that...

By SANS Digital Forensics and Incident Response
From Gut to Gold Standard: The Admiralty System in CTI
VideoApr 2, 2026

From Gut to Gold Standard: The Admiralty System in CTI

The presentation introduces the Admiralty Scale, a century‑old British Navy framework, as a rigorous method for evaluating source credibility and information reliability in cyber threat intelligence (CTI). Freddy argues that modern CTI suffers from opaque reporting, unverified claims, and bias,...

By SANS Digital Forensics and Incident Response
Hunting North Korea’s Contagious Interview Operation
VideoApr 2, 2026

Hunting North Korea’s Contagious Interview Operation

The presentation by senior threat analyst Kir Boyenko details North Korea’s state‑sponsored “contagious interview” campaign, which masquerades as recruiter outreach, test assignments, or take‑home exams to trick developers into executing malicious code. By targeting open‑source ecosystems—primarily npm, but also Python,...

By SANS Digital Forensics and Incident Response
Can We Forecast CTI’s Future? Mapping with SATs
VideoApr 2, 2026

Can We Forecast CTI’s Future? Mapping with SATs

The presentation uses a World‑War‑era forecasting analogy to argue that cyber‑threat‑intelligence (CTI) practitioners can—and should—apply structured analytic techniques (SATs) to anticipate industry shifts. By reviewing how British officials forecast aerial bombings and then evacuated 1.5 million civilians, the speaker illustrates how...

By SANS Digital Forensics and Incident Response