Securing
the .pl domain

Report an incident

Warning
list

List of domains used in malicious or fraudulent activity

View list >>

Guides
& resources

For everyone

Data
exchange

n6

MWDB

injects

Social media

Latest news

/CERT.Polska

@CERT_Polska_en

News

  • Linux Injector for automated malware analysis

    Article thumbnail

    Guest post by our Google Summer of Code student, Manorit Chawdhry Project proposal: https://summerofcode.withgoogle.com/projects/#6209067233574912 Motivation Wait, what? Malware on Linux? Yup, you read it right. Linux malware isn't given much importance in our community, as Windows is the most targeted operating system for malicious attacks …

    Read more
  • HID simulation for DRAKVUF

    Article thumbnail

    Guest post by our Google Summer of Code student, Jan Gruber Project proposal: https://summerofcode.withgoogle.com/projects/#6703931754807296 Overview My project for GSoC 2021 was to realize an undetectable simulation of human behaviour in the VMI-based sandbox DRAKVUF, which resulted in the contribution of a plugin named hidsim - short …

    Read more
  • 22 June 2021 CERT Polska #secure #cfp

    CFP Secure 2021

    Article thumbnail

    Why SECURE? Do you value hard work and facing challenges? Do you want to meet people like you, share your job results, look for inspiration or partners to mutual projects? You can find it all in October on our conference. We invite you to contribute to the agenda of the …

    Read more
  • Karton Gems 3: Malware extraction with malduck

    Article thumbnail

    Table of contents Getting Started Your first karton Malware extraction with malduck Introduction Today we'll continue topics started in the first part of the tutorial. We'll learn about malduck, what can it do and how to write your own modules. Later we'll also show how to integrate it with Karton …

    Read more
  • Karton Gems 2: Your first karton

    Article thumbnail

    Table of contents Getting Started Your first karton Malware extraction with malduck Introduction In the last part, we've explained how to set up a simple Karton pipeline and start your tasks. If you haven't already, it's probably a good idea to read it now. Or you can clone the karton-playground …

    Read more
  • Karton Gems 1: Getting Started

    Article thumbnail

    Table of contents Getting Started Your first karton Malware extraction with malduck What is Karton? Karton is a framework for microservice orchestration, designed by security researchers for security researchers (but flexible enough to be used everywhere). It shines in scenarios where there is a clear separation of "input" and "output …

    Read more
  • Keeping an eye on CloudEyE (GuLoader) - Reverse engineering the loader

    Article thumbnail

    CloudEye (originally GuLoader) is a small malware downloader written in Visual Basic that's used in delivering all sorts of malicious payloads to victim machines. Its primary function is to download, decrypt and run an executable binary off a server (commonly a legitimate one like Google Drive or Microsoft OneDrive). At …

    Read more
  • Set up your own malware analysis pipeline with Karton

    Article thumbnail

    We proudly announce that today we open-source a large part of our analysis framework and pipeline! If you want to try it – check out Karton project on GitHub. What is karton? Karton is a robust framework for lightweight and flexible analysis backends. It can be used to connect malware analysis …

    Read more
  • 21 October 2020 Paweł Srokosz #malware #tools

    Set up your own malware repository with MWDB Core

    Article thumbnail

    We proudly announce that the open-source version of MWDB Core has been released! If you want to try it – check out mwdb-core project on GitHub. What is MWDB Core? MWDB Core is a malware repository for automated malware collection and analysis systems, developed by CERT Polska. You can set it …

    Read more
  • 19 March 2020 piotrb #secure #cfp

    CFP Secure 2020

    Article thumbnail

    24th edition of iconic and the oldest cybersecurity conference in Poland. Do you love being on stage (or at least you don’t faint) and have something interesting to say? Apply! Why SECURE? There are many cybersecurity teams in Poland, but there is only one CERT Polska. And it guarantees …

    Read more