資源描述:
《Equation_group_questions_and_answers》由會員上傳分享,免費在線閱讀,更多相關(guān)內(nèi)容在學術(shù)論文-天天文庫。
1、EQUATIONGROUP:QUESTIONSANDANSWERSVersion:1.5February2015#EquationAPT#TheSAS20152Tableofcontents1.WhatistheEquationgroup?..........................................................................32.Whydoyoucallthemthe“Equation”group?..................
2、..............................33.Whatattacktoolsandmalwaredoesthe?Equationgroupuse?..................44.WhatisDOUBLEFANTASY?.............................................................................65.WhatisEQUATIONDRUG?...........................
3、...................................................86.WhatisGRAYFISH?.........................................................................................97.WhatisFanny?.............................................................................
4、................128.WhatexploitsdoestheEquationgroup?use?.............................................149.HowdovictimsgetinfectedbyEQUATIONgroupmalware?......................1510.WhatisthemostsophisticatedthingabouttheEQUATIONgroup?.........1611.Have
5、youobservedanyartifactsindicatingwhoisbehindthe?EQUATION?group?..................................................................................1912.Howmanyvictimsarethere?......................................................................2013.Ha
6、veyouseenanynon-WindowsmalwarefromtheEquationgroup?.....2214.WhatC&CinfrastructuredotheEquationgroupimplantsuse?...............2315.HowdovictimsgetselectedforinfectionbytheEQUATIONgroup?.........2316.Whatkindofencryptionalgorithmsare?usedbytheEQUATIO
7、Ngroup?...2717.HowdoestheEQUATIONgroup’sattackplatformscomparewithRegin?...................................................................................3018.Howdidyoudiscoverthismalware?..........................................................31I
8、ndicatorsofcompromise(“oneofeach”).........................................................32TLP:WhiteForanyinquiries,pleasecontactintelreports@kaspersky.com31.WhatistheEquationgroup?TheEquationgroupisahighlysophisticatedthreatactorthathasbeenengaged