No Result
View All Result
Global Finances Daily
  • Alternative Investments
  • Crypto
  • Financial Markets
  • Investments
  • Lifestyle
  • Protection
  • Retirement
  • Savings
  • Work & Careers
No Result
View All Result
  • Alternative Investments
  • Crypto
  • Financial Markets
  • Investments
  • Lifestyle
  • Protection
  • Retirement
  • Savings
  • Work & Careers
  • Login
Global Finances Daily
No Result
View All Result
Home Protection

CISA’s Malware Analysis Platform Could Foster Better Threat Intel

April 13, 2024
in Protection
0
CISA's Malware Analysis Platform Could Foster Better Threat Intel


The US Cybersecurity and Infrastructure Security Agency (CISA) has given organizations a new resource for analyzing suspicious and potentially malicious files, URLs, and IP addresses by making its Malware Next-Gen Analysis platform available to everyone earlier this week.

The question now is how organizations and security researchers will use the platform and what kind of new threat intelligence it will enable beyond what is available via VirusTotal and other malware analysis services.

The Malware Next-Gen platform uses dynamic and static analysis tools to analyze submitted samples and determine if they are malicious. It gives organizations a way to obtain timely and actionable information on new malware samples, such as the functionality and actions a string of code can execute on a victim system, CISA said. Such intelligence can be crucial to enterprise security teams for threat hunting and incident response purposes, the agency noted.

“Our new automated system enables CISA’s cybersecurity threat hunting analysts to better analyze, correlate, enrich data, and share cyber threat insights with partners,” said Eric Goldstein, CISA’s executive assistant director for cybersecurity, in a prepared statement. “It facilitates and supports rapid and effective response to evolving cyber threats, ultimately safeguarding critical systems and infrastructure.”

Since CISA rolled out the platform last October, some 400 registered users from various US federal, state, local, tribal, and territorial government agencies have submitted samples for analysis to Malware Next-Gen. Of the more than 1,600 files that users have submitted so far, CISA identified about 200 as suspicious files or URLs.

With CISA’s move this week to make the platform available to everyone, any organization, security researcher, or individual can submit malicious files and other artifacts for analysis and reporting. CISA will provide analysis only to registered users on the platform.

Jason Soroko, senior vice president of product at certificate lifecycle management vendor Sectigo, says the promise of CISA’s Malware Next-Generation Analysis platform lies in the insight it can potentially provide. “Other systems concentrate on answering the question ‘has this been seen before and is it malicious’,” he notes. “CISA’s approach might end up being prioritized differently to become ‘is this sample malicious, what does it do, and has this been seen before’.”

Malware Analysis Platform

Several platforms — VirusTotal is the most widely known — are currently available that use multiple antivirus scanners and static and dynamic analysis tools to analyze files and URLs for malware and other malicious content. Such platforms serve as a sort of centralized resource for known malware samples and associated behavior that security researchers and teams can use to identify and assess risk associated with new malware.

How different CISA’s Malware Next-Gen will be from these offerings remains unknown.

“At this time, the US government has not detailed what makes this different from other open source sandbox analysis options that are available,” Soroko says. The access that registered users will get to analysis of malware targeted at US government agencies could be valuable, he says. “Getting access to CISA’s in-depth analysis would be the reason to participate. It remains to be seen for those of us outside of the US government if this is better or the same as other open source sandbox analysis environments.”

Making a Difference

Callie Guenther, senior manager, cyber threat research at Critical Start, says it’s possible that some organizations might initially be a bit cautious about contributing samples and other artifacts to a government-run platform because of data confidentiality and compliance issues. But the potential upside from a threat intelligence standpoint could encourage participation, Guenther notes. “The decision to share with CISA will likely consider the balance between enhancing collective security and safeguarding sensitive information.”

CISA can differentiate its platform and deliver more value by investing in capabilities that enable it to detect sandbox-evading malware samples, says Saumitra Das, vice president of engineering at Qualys. “CISA should try to invest in both AI-based classification of malware samples as well as tamper-resistant dynamic analysis techniques … that could better uncover [indicators of compromise],” he says.

A larger focus on malware targeting Linux systems would also be a big improvement, Das says. “A lot of the current focus is on Windows samples from EDR use cases but with [Kubernetes] and cloud-native migration happening, Linux malware is on the rise and are quite different in their structure,” from Windows malware, he says.



Editorial Team

Editorial Team

Related Posts

The iPad Has Never Been More Like a Mac, but Can It Replace One?
Protection

The iPad Has Never Been More Like a Mac, but Can It Replace One?

November 19, 2025
This Samsung Galaxy Tab S10+ Is Already $250 Off for Black Friday
Protection

This Samsung Galaxy Tab S10+ Is Already $250 Off for Black Friday

November 19, 2025
Google's New Gemini Pro Features Are Out, but Most of Them Will Cost You
Protection

Google’s New Gemini Pro Features Are Out, but Most of Them Will Cost You

November 19, 2025
Easy Ways You Can Edit PDFs Directly From Your Mac
Protection

Easy Ways You Can Edit PDFs Directly From Your Mac

November 19, 2025
We Now Know What Caused the Cloudflare Outage Tuesday Morning
Protection

We Now Know What Caused the Cloudflare Outage Tuesday Morning

November 19, 2025
The Meta Quest 3S VR Headset Just Dropped To Its Lowest Price Ever On Amazon
Protection

The Meta Quest 3S VR Headset Just Dropped To Its Lowest Price Ever On Amazon

November 19, 2025
Load More
Next Post
2 Artificial Intelligence (AI) Stocks That Look Ready for a Split

2 Artificial Intelligence (AI) Stocks That Look Ready for a Split

Popular News

  • Josh Garber

    How to Contact Hilton Customer Service

    0 shares
    Share 0 Tweet 0
  • African private market funds holding $51bn in AUM

    0 shares
    Share 0 Tweet 0
  • 12 Best Steakhouses in Las Vegas for Showgirl, Mob-Boss, and Retro Vibes

    0 shares
    Share 0 Tweet 0
  • Google Has Finally Set Usage Limits for Gemini AI (Based on How Much You Pay)

    0 shares
    Share 0 Tweet 0
  • Ex-Brite employees start a new advisory firm linked to their former CEO.

    0 shares
    Share 0 Tweet 0

Latest News

Analyst Report: First Solar Inc

Analyst Report: First Solar Inc

November 19, 2025
0

Analyst Report: First Solar Inc

Kevin Carr: The protection market is worth betting on

Kevin Carr: The protection market is worth betting on

November 19, 2025
0

I write this as we await the initial outcome of the regulator’s investigation into the protection industry. Whatever the recommendations...

Kraken Files IPO After $800M Fundraising at $20B Valuation

Kraken Files IPO After $800M Fundraising at $20B Valuation

November 19, 2025
0

Key NotesKraken has confidentially submitted a draft registration statement (Form S-1) to the SEC.The firm recently secured $800 million in...

Access Restricted

Access Restricted

November 19, 2025
0

Access Restricted Associated Newspapers Ltd Access Restricted Thank you for your interest. Unauthorised access is prohibited. To access this content,...

Global Finances Daily

Welcome to Global Finances Daily, your go-to source for all things finance. Our mission is to provide our readers with valuable information and insights to help them achieve their financial goals and secure their financial future.

Subscribe

  • About Us
  • Contact
  • Privacy Policy
  • Terms of Use
  • Editorial Process

© 2025 All Rights Reserved - Global Finances Daily.

No Result
View All Result
  • Alternative Investments
  • Crypto
  • Financial Markets
  • Investments
  • Lifestyle
  • Protection
  • Retirement
  • Savings
  • Work & Careers

© 2025 All Rights Reserved - Global Finances Daily.

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In
This website uses cookies. By continuing to use this website you are giving consent to cookies being used. Visit our Privacy and Cookie Policy.