Keynote - The Equation Group

No ratings

Presented at Dimva 2015 by

Abstract: The Equation Group, as far as I know, might have been active for almost two decades. For many years they have interacted with other powerful groups, such as the Stuxnet and Flame groups; always from a position of superiority, as they had access to exploits earlier than the others. To infect their victims, the Equation Group uses a powerful arsenal of "implants". Still, they have used a very unique technique never seen to run their malware before and that could be considered as invisible to the operating system by directly planting it in the HD firmware. During this talk we will review the most notable milestones in the evolution of APT attacks, and detail what we consider the probably most advanced threat known to date - courtesy of the Equation Group.