12 citations · 17 across the 3 of their papers we have counts for
4 papers
Active and Passive Collection of SSH key material for cyber threat intelligence
Alexandre Dulaunoy, Jean-Louis Huynen, Aurelien Thirion
This paper describes a system for storing historical forensic artefacts collected from SSH connections. This system exposes a REST API in a similar fashion as passive DNS databases…
Taxonomy driven indicator scoring in MISP threat intelligence platforms
Sami Mokaddem, Gerard Wagener, Alexandre Dulaunoy +1
IT security community is recently facing a change of trend from closed to open working groups and from restrictive information to full information disclosure and sharing. One major…
Decaying Indicators of Compromise
Andras Iklody, Gerard Wagener, Alexandre Dulaunoy +2
The steady increase in the volume of indicators of compromise (IoC) as well as their volatile nature makes their processing challenging. Once compromised infrastructures are cleane…
Torinj : Automated Exploitation Malware Targeting Tor Users
Gerard Wagener, Alexandre Dulaunoy, Radu State
We propose in this paper a new propagation vector for malicious software by abusing the Tor network. Tor is particularly relevant, since operating a Tor exit node is easy and invol…