Cuckoo Sandbox Overview and Demo

Поділитися
Вставка
  • Опубліковано 6 лют 2025
  • Cuckoo Sandbox Overview and Demo

КОМЕНТАРІ • 49

  • @TheCrookedPenguin
    @TheCrookedPenguin 7 років тому +16

    This presentation is extremely helpful and detailed. Mr Yantorno explains everything with great detail. Also, this is a must-see video from anyone starting out with cuckoo.
    You helped me immensely, thank you very much.

  • @manoharbaratam8792
    @manoharbaratam8792 6 років тому

    Nice video Yantorno, this is a must watch video for beginners of Cuckoo and can get a clear cut idea about what it is and how it works,. Please upload your presentation and the URL's in Video description which help people to directly view instead of pausing the video and typing it. Great work, really appreciated and please do make more videos like this

  • @jimivie
    @jimivie 3 роки тому

    Not too many videos on YouTUbe over an hour I finish....nice work

  • @michaelkasede1489
    @michaelkasede1489 6 років тому +1

    Hi, great presentation. This presentation clearly should get more views and likes. Not to worry, many people out there are not cut out for this kind of work. Kudos mate!!

  • @TheSoDHater
    @TheSoDHater 8 років тому +8

    The male wares got me rolling though.

  • @pbr3s
    @pbr3s 5 років тому +2

    7:28 "you're inside a simulation of a simulation [...]"

  • @maximumrpg3707
    @maximumrpg3707 7 років тому +1

    Are you ever going to do more videos like this? Stuff like this is always interesting.

  • @mmm-me4kk
    @mmm-me4kk 2 роки тому

    Hello, thank you for the presentation. Now Cuckoo is outdated and not really in use anymore, do you know some good alternatives?

  • @rajrana-qx2on
    @rajrana-qx2on Рік тому

    Thank you so much, Would you able to provide this slide/presentation by any chance?

  • @dvdjonny
    @dvdjonny 7 років тому +3

    Hey... Thanks for sharing this! is there anywhere I can read your Presentation online?

  • @steveswitzer4353
    @steveswitzer4353 6 років тому

    Great many thanks i am going to try and get this up and working for my organisation

  • @droidlabour
    @droidlabour 5 років тому +1

    Mongodb isn't a fork of MySQL, The fork is MariaDB

  • @blusteel28
    @blusteel28 7 років тому

    Awesome video, thanks for posting!

  • @Puvipavan
    @Puvipavan 4 роки тому

    Can't you change system date to fast forward it when malware sleeps for 2 days?

  • @allanng78
    @allanng78 7 років тому

    Hi,
    Did you install any addition prior to this demonstration?

  • @patrickkirchner4464
    @patrickkirchner4464 7 років тому

    Was that XP VM automatically reverted to the snapshot after each of the the malware samples was analyzed or would you need to manually do that?

  • @EngMohannad1
    @EngMohannad1 7 років тому

    Thanks, very useful. Can I use Cuckoo for analyzing ELF binaries?

  • @bennybenassi9497
    @bennybenassi9497 8 років тому

    Hi Chad,
    thank you for this Video.
    How did you get results for Hosts, DNS, Network (40:55), HTTP/HTTPS, TCP (42:22), because I get only UDP?

  • @pashkaewall8857
    @pashkaewall8857 6 років тому

    has anyone had any experience of taking action against a party whose repeatly sent metaexploited files to the opposition party in a litigation case?

  • @absentfromtheworld
    @absentfromtheworld 7 років тому

    Is it possible to setup and use Cuckoo without a virtualmachine running windows?

  • @dansharvit725
    @dansharvit725 5 років тому

    Can you run different AV's on each VM to test them against the malware?

  • @TheEggroll4321
    @TheEggroll4321 5 років тому

    Good job! Very helpful

  • @grootgroot1929
    @grootgroot1929 2 роки тому

    Hi, You used guest vms inside cuckoo-vm. Can we have guest vm outside cuckoo vm? For ex. create 2 vms in virtual box. vm1 as cuckoo vm. vm2 as guest vm. Query open to everyone.

  • @360dom360
    @360dom360 7 років тому

    Do you have a download for any of the files you uploaded? I would like to go through some of these myself (running linux so no worries about getting a windows machine infected)

    • @emilhozan71
      @emilhozan71 6 років тому

      I'm pretty sure he directed you to the GitHub repo.

  • @brianjigg6697
    @brianjigg6697 7 років тому

    How to add signature in cuckoo library?
    I have created a new signature for a ransomware and want to add it in cuckoo.

  • @BhavdeepSinghSachdeva
    @BhavdeepSinghSachdeva 8 років тому

    Is there some support for converting cuckoo json files created to MIST(Malware Instruction Sets) for machine learning analysis of these files.

    • @wshep17
      @wshep17 7 років тому

      any success?

  • @rizkimaulana4645
    @rizkimaulana4645 5 років тому

    Hey, anyone know which one is called "system call"??

  • @yashkhandelwalhyd
    @yashkhandelwalhyd 8 років тому

    Is there a way, I can get this presentation ??

  • @warrenperez9312
    @warrenperez9312 8 років тому

    I have been trying to install cuckoo on ubuntu but when running cuckoo and passing the malware using submit.py, cuckoo is unable to startup the virtual machine.
    Any ideas?

  • @Juan-je3ml
    @Juan-je3ml 8 років тому +3

    Mongo is not a fork of Mysql. you are referring to mariadb. Yara looks at characteristics of a certain file, not behavior. New version of cuckoo is also able to automatically implement ip tables for you so that you car have different exits. Also depending on your distro you might be falling behind on kernel upgrades due using apt upgrade instead of dist-upgrade (depends on your hardware enablement stack). just 2 cents.

    • @chadyantorno
      @chadyantorno  8 років тому +5

      Thanks for your comment. I was talking for about an hour and it's possible I misspoke in some instances. This video wasn't about Linux and kernel upgrades, it was about Cuckoo.

  • @und3rgr0undfr34k
    @und3rgr0undfr34k 5 років тому

    awesome !

  • @wrcz
    @wrcz 3 роки тому

    Chad Yantorno vs Virgin Malware

  • @ibnomer342
    @ibnomer342 8 років тому

    Thank you!

  • @shamimlimon7585
    @shamimlimon7585 8 років тому

    I am try to configure this but after load http: 127.0.0.1:8000 error message like this"""Template doesn't exit"" in web page. please help me..

    • @emilhozan71
      @emilhozan71 6 років тому

      did you run the two scripts required?
      what about rebooting the machines?

  • @kognitiva
    @kognitiva 6 років тому

    Dont think that MongoDB is a fork of MySql. It's not the "same exact thing" :)

    • @navjotsingh2251
      @navjotsingh2251 5 років тому

      Yeah, it is not a fork. They are very different. MySQL is a relational database and mongo is a non relational database, their languages are very different too.

  • @ca7986
    @ca7986 3 роки тому

    ❤️👌

  • @jfoter
    @jfoter 7 років тому +1

    You lost me when you presented wrong facts. MariaDB is the form of MySQL after the Oracle purchase. Mongo is not a relational database like MySQL and MariaDB; Mongo is a Document based NoSQL database.

    • @jfoter
      @jfoter 7 років тому

      :s/Form/fork/

    • @chadyantorno
      @chadyantorno  7 років тому +1

      Thanks for the clarification. I'm always learning and it's possible I misspoke or was incorrect in some instances.

    • @emilhozan71
      @emilhozan71 6 років тому +1

      Do those technicalities really matter though?
      Have you put out any work regarding anything?
      By no means am I excusing his errors but it's not easy putting content out for fear of such scrutiny. The video wasn't about the history of MongDB / Linux commands / or anything OTHER THAN Cuckoo. Do you have any feedback about that, or did you stop it just to comment?