Re-sharing this over here because it might be of interest to the people on this instance (also, it's sort of an introduction
).
I recently gave a talk at the Virusbulletin-conference on how reporters find and fact-check stories on hacking incidents.
I'm talking about looking at PassiveDNS data to find relevant domains connected to ongoing hacking campaigns but also on re-discovering information that was made public years ago to connect it to a campaign that is still active.
Some of the answers might be obvious, others not so much (at least, that's what I was aiming for.)
The talk is titled: "Why are you telling me this?" and all I'm doing is to answer that question for 40 minutes
https://www.youtube.com/watch?v=rtlTF1Ajjdw
(I have posted this yesterday, but just now saw (I think!) that I've sent it to just myself, it popped up in my DMs. STILL LEARNING! Apologies if this shows up twice.)