Cuckoo Sandbox Overview and Demo

Поделиться
HTML-код
  • Опубликовано: 8 сен 2024
  • Cuckoo Sandbox Overview and Demo

Комментарии • 50

  • @TheCrookedPenguin
    @TheCrookedPenguin 7 лет назад +16

    This presentation is extremely helpful and detailed. Mr Yantorno explains everything with great detail. Also, this is a must-see video from anyone starting out with cuckoo.
    You helped me immensely, thank you very much.

  • @pbr3s
    @pbr3s 5 лет назад +2

    7:28 "you're inside a simulation of a simulation [...]"

  • @manoharbaratam8792
    @manoharbaratam8792 6 лет назад

    Nice video Yantorno, this is a must watch video for beginners of Cuckoo and can get a clear cut idea about what it is and how it works,. Please upload your presentation and the URL's in Video description which help people to directly view instead of pausing the video and typing it. Great work, really appreciated and please do make more videos like this

  • @TheSoDHater
    @TheSoDHater 7 лет назад +8

    The male wares got me rolling though.

  • @jimivie
    @jimivie 3 года назад

    Not too many videos on YouTUbe over an hour I finish....nice work

  • @michaelkasede1489
    @michaelkasede1489 6 лет назад +1

    Hi, great presentation. This presentation clearly should get more views and likes. Not to worry, many people out there are not cut out for this kind of work. Kudos mate!!

  • @joyprakashsharma8234
    @joyprakashsharma8234 5 лет назад +1

    Mongodb isn't a fork of MySQL, The fork is MariaDB

  • @steveswitzer4353
    @steveswitzer4353 5 лет назад

    Great many thanks i am going to try and get this up and working for my organisation

  • @maximumrpg3707
    @maximumrpg3707 7 лет назад +1

    Are you ever going to do more videos like this? Stuff like this is always interesting.

  • @dvdjonny
    @dvdjonny 6 лет назад +3

    Hey... Thanks for sharing this! is there anywhere I can read your Presentation online?

  • @rajrana-qx2on
    @rajrana-qx2on Год назад

    Thank you so much, Would you able to provide this slide/presentation by any chance?

  • @blusteel28
    @blusteel28 7 лет назад

    Awesome video, thanks for posting!

  • @mmm-me4kk
    @mmm-me4kk Год назад

    Hello, thank you for the presentation. Now Cuckoo is outdated and not really in use anymore, do you know some good alternatives?

  • @TheEggroll4321
    @TheEggroll4321 5 лет назад

    Good job! Very helpful

  • @patrickkirchner4464
    @patrickkirchner4464 7 лет назад

    Was that XP VM automatically reverted to the snapshot after each of the the malware samples was analyzed or would you need to manually do that?

  • @marioborroto4204
    @marioborroto4204 8 лет назад

    Great write up bro!

  • @pashkaewall8857
    @pashkaewall8857 6 лет назад

    has anyone had any experience of taking action against a party whose repeatly sent metaexploited files to the opposition party in a litigation case?

  • @EngMohannad1
    @EngMohannad1 7 лет назад

    Thanks, very useful. Can I use Cuckoo for analyzing ELF binaries?

  • @und3rgr0undfr34k
    @und3rgr0undfr34k 5 лет назад

    awesome !

  • @ca7986
    @ca7986 3 года назад

    ❤️👌

  • @Puvipavan
    @Puvipavan 4 года назад

    Can't you change system date to fast forward it when malware sleeps for 2 days?

  • @allanng78
    @allanng78 6 лет назад

    Hi,
    Did you install any addition prior to this demonstration?

  • @Juan-je3ml
    @Juan-je3ml 8 лет назад +3

    Mongo is not a fork of Mysql. you are referring to mariadb. Yara looks at characteristics of a certain file, not behavior. New version of cuckoo is also able to automatically implement ip tables for you so that you car have different exits. Also depending on your distro you might be falling behind on kernel upgrades due using apt upgrade instead of dist-upgrade (depends on your hardware enablement stack). just 2 cents.

    • @chadyantorno
      @chadyantorno  8 лет назад +5

      Thanks for your comment. I was talking for about an hour and it's possible I misspoke in some instances. This video wasn't about Linux and kernel upgrades, it was about Cuckoo.

  • @ibnomer342
    @ibnomer342 7 лет назад

    Thank you!

  • @wrcz
    @wrcz 3 года назад

    Chad Yantorno vs Virgin Malware

  • @360dom360
    @360dom360 7 лет назад

    Do you have a download for any of the files you uploaded? I would like to go through some of these myself (running linux so no worries about getting a windows machine infected)

    • @emilhozan71
      @emilhozan71 5 лет назад

      I'm pretty sure he directed you to the GitHub repo.

  • @absentfromtheworld
    @absentfromtheworld 7 лет назад

    Is it possible to setup and use Cuckoo without a virtualmachine running windows?

  • @grootgroot1929
    @grootgroot1929 Год назад

    Hi, You used guest vms inside cuckoo-vm. Can we have guest vm outside cuckoo vm? For ex. create 2 vms in virtual box. vm1 as cuckoo vm. vm2 as guest vm. Query open to everyone.

  • @BhavdeepSinghSachdeva
    @BhavdeepSinghSachdeva 7 лет назад

    Is there some support for converting cuckoo json files created to MIST(Malware Instruction Sets) for machine learning analysis of these files.

  • @dansharvit725
    @dansharvit725 4 года назад

    Can you run different AV's on each VM to test them against the malware?

  • @bennybenassi9497
    @bennybenassi9497 7 лет назад

    Hi Chad,
    thank you for this Video.
    How did you get results for Hosts, DNS, Network (40:55), HTTP/HTTPS, TCP (42:22), because I get only UDP?

  • @rizkimaulana4645
    @rizkimaulana4645 5 лет назад

    Hey, anyone know which one is called "system call"??

  • @brianjigg6697
    @brianjigg6697 7 лет назад

    How to add signature in cuckoo library?
    I have created a new signature for a ransomware and want to add it in cuckoo.

  • @warrenperez9312
    @warrenperez9312 7 лет назад

    I have been trying to install cuckoo on ubuntu but when running cuckoo and passing the malware using submit.py, cuckoo is unable to startup the virtual machine.
    Any ideas?

  • @yashkhandelwalhyd
    @yashkhandelwalhyd 8 лет назад

    Is there a way, I can get this presentation ??

  • @kognitiva
    @kognitiva 5 лет назад

    Dont think that MongoDB is a fork of MySql. It's not the "same exact thing" :)

    • @navjotsingh2251
      @navjotsingh2251 4 года назад

      Yeah, it is not a fork. They are very different. MySQL is a relational database and mongo is a non relational database, their languages are very different too.

  • @shamimlimon7585
    @shamimlimon7585 7 лет назад

    I am try to configure this but after load http: 127.0.0.1:8000 error message like this"""Template doesn't exit"" in web page. please help me..

    • @emilhozan71
      @emilhozan71 5 лет назад

      did you run the two scripts required?
      what about rebooting the machines?

  • @jfoter
    @jfoter 7 лет назад +1

    You lost me when you presented wrong facts. MariaDB is the form of MySQL after the Oracle purchase. Mongo is not a relational database like MySQL and MariaDB; Mongo is a Document based NoSQL database.

    • @jfoter
      @jfoter 7 лет назад

      :s/Form/fork/

    • @chadyantorno
      @chadyantorno  7 лет назад +1

      Thanks for the clarification. I'm always learning and it's possible I misspoke or was incorrect in some instances.

    • @emilhozan71
      @emilhozan71 5 лет назад +1

      Do those technicalities really matter though?
      Have you put out any work regarding anything?
      By no means am I excusing his errors but it's not easy putting content out for fear of such scrutiny. The video wasn't about the history of MongDB / Linux commands / or anything OTHER THAN Cuckoo. Do you have any feedback about that, or did you stop it just to comment?