In the software development world, engineers frequently use ready-made code for various tasks. On the darker side of things, malware authors follow in the same path, why write your own code when existing code is prevalent and easy to use. A phenomenon that we see time and time again and one that proves beneficial in detecting malicious intent, if understood correctly.
Together with Intezer Analyze and SANS Jake Williams, we will demonstrate how finding code reuse of known malware enables you to improve and accelerate incident response plans.