Recently the team of RCTS CERT has increased its malware analysis capacity. The strengthened team and expanded set of tools used in the analysis process now allow for a faster and more comprehensive response to the number of analysis requests, which has grown over the past few months.
In this context, and because information sharing is an important factor in combating this phenomenon, some cases analyzed with interesting contours are (from January 15th) being shared by the RCTS CERT team on MISP (Malware Information Sharing Platform) of FIRST (Forum of Incident Response and Security Teams).
The MISP platform allows FIRST members to efficiently share technical and non-technical information about samples. malware, attackers, and incidents. It also allows members who have not yet acquired experience in threat analysis to benefit from a broad community of organizations that already have this expertise, thus increasing global malware-fighting capabilities.
FIRST is the “Forum of Incident Response and Security Teams”, currently composed of 450 teams spread across the world, which the team RCTS CERT integrated, since April 2011.