Our editorial team has handpicked the best talks at Discussion Summit - a small community summit where we aim to find out the problems and solutions currently faced in the cyber security industry. This talks is on 'Iranian Nationwide Terror And Intelligence Operations In Israeli Cyberspace' By Omri Segev Moyal

In this talk we will learn about the cyber information operation conducted by Iranian threat actors against Israeli in the past two years. Malware Researcher and Threat Intelligence expert with global experience in military, industrial, intelligence, communication and financial organisations. Expertise as a testing provider of advanced malware solutions in both laboratory and enterprise production environments. The talk tells about the cyber information operation conducted by Iranian threat actors against Israelis in the past two years.

(From The Editorial Team): Download Complete Guide To Top Talks @CISO Discussion Summit 2021

 

Omri%20SM%20banner.png

 

 

About Speaker

Omri Segev Moyal (Co-Founder & CEO, Profero). Forbes 30 under 30.
Moyal is the CEO and co-founder of Israeli cybersecurity company Profero that specializes in incident response, meaning it helps companies address and manage the aftermath of a security breach or cyberattack. Moyal founded Profero with CTO Guy Barnhart-Magen in 2019 and the company has grown significantly since, although Moyal refuses to reveal exactly by how much in order not to play into the hands of those aiming to harm it and its clients. Moyal, who is also the co-founder of Minerva Labs and the former CTO of ClearSky Cyber Security, was willing to say that Profero employs experts from across the world, aiming to provide an around the clock service to companies in their time of need. He likened the company to Israel's National Counter Terrorism Unit due to the way in which it attracts top talent from the mlitary's elite combat units.. (reference link)

 

 

(Watch Now) Keynote Session : 

>> Download Complete Guide To Top Talks @CISO Discussion Summit 2021

 

 

Highlights From Presentation

1. Pay2 Key

  • First hits in Israel and the world mid october 2020 (Inter industries and some more)
  • Mostly using exposed SAP and very common vulnerabilities as PO
  • Shared infrastructure which entities in Africa was used against cargo companies in Israel (Oct-Nov 2020)
  • Possibly targeting the vaccine shipments
  • Onion website released

 

2. Blackshadow (Shirbit)

  • Nov - Dec 2020
  • Multiple webshells, payloads and harvesting
  • Simple wipers (reversable to some extent)
  • Custom Trojan (ipsecheckhelper)
  • Stunnels
  • Telegram leak channels

 

3. IOCs match previous Iranian destructive attack

O1.png

O2.png>> Download Complete Guide To Top Talks @CISO Discussion Summit 2021

 

 

 

4. Bitcoin Tracking

O3.png

 

O4.png

 

 

5. CVE- 2018 -13379
O5.png

 

6. Winter is coming / Pay2key

  • Post Fortinet explotation
  • Dec 2020, multiple Ransomware hits
  • Onion website updated
  • Media attention intensify (post Shirbit)
  • Reverse tunneling RDP sessions
  • Custom Payloads

>> Download Complete Guide To Top Talks @CISO Discussion Summit 2021

 

 

7. Blackshadow March 2021

  • Post Fortinet explotation (Nov 2020)
  • Zerologon (Dec 2020)
  • Dotnet wiper
  • Custom trojan (ipscheckhelper)
  • Stunnels
  • Telegram leak channels

 

8. Employee at Minister Of Defence home arrested

  • November 2021
  • Communicated with blackshadow group
  • Leaked photos from the home of minister
  • Arrested by ShinBet
  • Government did not attribute officially the communication was with Iran

 

 

Guide%20banner.png?profile=RESIZE_930x

 

Download Complete Guide To Top Talks @CISO Discussion Summit 2021

Get your FREE Guide on Top Talks @ CISO Discussion Summit. Our editorial team has gone through all the talks and handpicked the best of the best talks at Discussion Summit into a single guide. Get your Free copy today.

>>Click Here To Get Your FREE Guide

E-mail me when people leave their comments –

CISO Platform

You need to be a member of CISO Platform to add comments!

Join CISO Platform

CISO Platform

A global community of 5K+ Senior IT Security executives and 40K+ subscribers with the vision of meaningful collaboration, knowledge, and intelligence sharing to fight the growing cyber security threats.

Join CISO Community Share Your Knowledge (Post A Blog)