International Journal For Multidisciplinary Research

E-ISSN: 2582-2160     Impact Factor: 9.24

A Widely Indexed Open Access Peer Reviewed Multidisciplinary Bi-monthly Scholarly International Journal

Call for Paper Volume 6 Issue 4 July-August 2024 Submit your research before last 3 days of August to publish your research paper in the issue of July-August.

Exploring Cyber Threats and Threat Actors in the Financial Sector: A Comprehensive Study

Author(s) Srivastava Shivang, Chinnuswamy Tamizhselvan, Parameswaran Ganesan, Rengabashyam Asha
Country Singapore
Abstract This paper aims to discuss the recent activities of Financially motivated Threat actors and gather IOCs and Threat Intelligence based on the same. Common TTPs are mapped for 18 FIN threat actor groups along with known mitigations as per MITRE Attack Framework. In particular, FIN 7 is discussed in detail, including the lifecycle of Qakbot Malware and malwares are analyzed to gather IOCs using Static Analysis. Intrusion Detection Systems (Snort and YARA) are drafted for Qakbot. A comprehensive analysis on Diamond Model, Kill Chain and Pyramid of Pain is performed for Qakbot Malware and mitigations are mapped to MITRE ATTACK framework. Threat intelligence is gathered on the 1000 latest samples of Qakbot to deep dive into most commonly used delivery methods, malware file types and a timeline analysis is conducted. Advanced tools like OpenCTI and Cuckoo Sandbox are utilized to give an overall analysis on Financially motivated threat actors
Keywords Cyber Threat Detection, Threat Intelligence
Field Computer > Network / Security
Published In Volume 5, Issue 6, November-December 2023
Published On 2023-12-25
Cite This Exploring Cyber Threats and Threat Actors in the Financial Sector: A Comprehensive Study - Srivastava Shivang, Chinnuswamy Tamizhselvan, Parameswaran Ganesan, Rengabashyam Asha - IJFMR Volume 5, Issue 6, November-December 2023. DOI 10.36948/ijfmr.2023.v05i06.10843
DOI https://doi.org/10.36948/ijfmr.2023.v05i06.10843
Short DOI https://doi.org/gs98sk

Share this