This page was machine-translated and may differ from the original. View original
Maestro Forensics Hosts Security Seminar on Vulnerability Assessment to Incident Response
Demonstration of attack scenarios and forensic analysis, sharing of asset management and initial response issues
Maestro Forensic announced on April 30 that it held the 'Integrated Seminar on Vulnerability Assessment, Penetration Testing, and Incident Response' the previous day at the Insec Security Training Center in Doksan-dong, Seoul. Security practitioners from the public, financial, manufacturing, and IT sectors attended the event.
The seminar introduced recent changes in cyber attack types. Cases were shared regarding ransomware, Advanced Persistent Threats (APTs), and fileless attacks, which are difficult to respond to with existing detection systems.
In addition, difficulties in vulnerability management and response were mentioned as the number of assets under management increases due to the proliferation of cloud, IoT, and endpoints. Unmanaged assets, long-term unpatched systems, and the potential for attacks through the supply chain were also presented as major issues.
At the event, an integrated scenario spanning from attack to response was presented in the form of a live demo. In the vulnerability assessment phase, a method for analyzing asset-specific risk based on vulnerability data was introduced, and in the penetration testing session, the exploitation of remote code execution vulnerabilities, internal spread, and privilege escalation processes were demonstrated step-by-step.
In the digital forensics session, the process of reconstructing attack flows through memory-based data collection and analysis was shared. Following this, the incident response session introduced methods for securing data during the initial response phase and preventing internal spread.
Kim Jong-kwang, CEO of Maestro Forensic, stated, “Unmanaged assets and delayed response are being identified as major causes of security breaches,” adding, “A security management system is needed that extends from vulnerability identification to response.”
본 기사에 대한 정정·반론·추후보도 청구는 보도 청구 안내를, 그간 게재된 보도문은 정정·반론보도 모아보기를 참고해 주세요.















