Breaking Badness cover image

Special Report - Quadrant Security

Breaking Badness

00:00

Is MDR a Managed Detection and Response (MDR)?

MDR is managed detection and response. It's an open source piece of software that I started developing in 2009 called Sagin, which you can find on GitHub. And then we help mitigate by being able to communicate with clients, firewalls or their endpoints to help stop and mitigate threats. So what the Quackpot is, is it's a handy tool for your thread actors. It works as a backdoor. Immediately this thing started calling out to command and control servers or C2 domains. After a short time, I was able to download a second stage, which was later to be determined as a brute tell from an IP in Russia. Later while we were going through the logs

Transcript
Play full episode

The AI-powered Podcast Player

Save insights by tapping your headphones, chat with episodes, discover the best highlights - and more!
App store bannerPlay store banner
Get the app