Chaos Machine: AP APT28 T28 FA FANCY NCY BEA BEAR R Co - - PowerPoint PPT Presentation

chaos machine
SMART_READER_LITE
LIVE PREVIEW

Chaos Machine: AP APT28 T28 FA FANCY NCY BEA BEAR R Co - - PowerPoint PPT Presentation

Chaos Machine: AP APT28 T28 FA FANCY NCY BEA BEAR R Co Comp mplex lex Jason Kichen Alex Orleans Disclaimers We are here speaking for/on behalf of no one but ourselves, and in no way do either of us represent the United States


slide-1
SLIDE 1

Chaos Machine:

AP APT28 T28 FA FANCY NCY BEA BEAR R Co Comp mplex lex

Jason Kichen Alex Orleans

slide-2
SLIDE 2

Disclaimers

▪ We are here speaking for/on behalf of no one but ourselves, and in no way do either of us represent the United States Government. ▪ Our analyses are based entirely on assessments of open source reporting.

@jckichen // @wylienewmark

slide-3
SLIDE 3

Who We Are

@jckichen // @wylienewmark

slide-4
SLIDE 4

What We’re Here to Talk About

@jckichen // @wylienewmark

slide-5
SLIDE 5

How We’re Going to Do That

@jckichen // @wylienewmark

slide-6
SLIDE 6

Why Should You Care

Understand dynamics in state- nexus op cycle Greater value from attribution Dividends for blue and red teams

@jckichen // @wylienewmark

slide-7
SLIDE 7

Idea of Actors Existing on a Clear Spectrum

@jckichen // @wylienewmark

Highly Chaotic Highly Orderly

slide-8
SLIDE 8

Reality is Messy, Not Pretty

@jckichen // @wylienewmark

Highly Chaotic Highly Orderly

slide-9
SLIDE 9

Implications of a Common (Mis)conception

@jckichen // @wylienewmark

The chaotic nature of reality affects a threat actor at all levels

slide-10
SLIDE 10

Collision of Chaos and State-nexus Ops

Strategic Culture

  • Org. Cultures/

Competition Leadership Demands Domestic Politics

@jckichen // @wylienewmark

slide-11
SLIDE 11

Our Case Study: GRU Units 26165 & 74455

@jckichen // @wylienewmark

slide-12
SLIDE 12

Strategic Culture

@jckichen // @wylienewmark

Example: Clandestine Mentality

slide-13
SLIDE 13

Organizational Cultures and Competition

@jckichen // @wylienewmark

Example: Wartime Mindset

slide-14
SLIDE 14

Leadership Demands

@jckichen // @wylienewmark

Example: Praetorianism

slide-15
SLIDE 15

Domestic Politics

@jckichen // @wylienewmark

Example: National pride/prestige

slide-16
SLIDE 16

Chaos as Manifest in Operational Dynamics

▪ “Hang-on-tight” thinking

– In planning/timing – In execution – In post-op and/or follow-on activity – In the aftermath of compromise

▪ Adversary Optionality ▪ Operational Decisions

@jckichen // @wylienewmark

slide-17
SLIDE 17

Apparent Chaotic Dynamics in Revealed Activity

@jckichen // @wylienewmark

slide-18
SLIDE 18

Why All This Matters

▪ Holistic understanding of malicious activity’s drivers can deepen comprehension of an attribution’s implications ▪ Can support smarter defense across multiple lines of effort ▪ Can enhance fidelity of adversary emulation activities

@jckichen // @wylienewmark

slide-19
SLIDE 19

Where Do We Go From Here?

▪ Influence of a government’s ideology ▪ Influence of pseudo- and non- governmental interests ▪ Further leveraging public research resources to analyze internal dynamics of relevant state entities

@jckichen // @wylienewmark

slide-20
SLIDE 20

Jason Kichen (@jckichen) Alex Orleans (@wylienewmark)