http://conference.hitb.org/hitbsecconf2012ams/ Amsterdam, 2012 Day1, Track1, 11:30 Claudio Guarnieri One Flew Over The Cuckoos Nest: Automated Malware Analysis Pros presented a reasonable list of items which should be anyway common-sense pros items Cons commercial solution are very expensive environment could be detected difficult to successfully automate without proper consumption of the results, they are useless Preparation define requirements and expectations design analysis environment integrate into a larger threat analysis result framework Questions to be answered Why? What? What? Who? How? Decide the category of the exploits cuckoobox.org PDF Office PHP, perl scripts browser exploits CUCKOO framework malwr.com multiple Google SoC grants Integration what are the other threat frameworks does it integrate with Links cuckoosandbox.org blog.cuckoosandbox.org malwr.com honeynet.org Threat analysis frameworks wiki pages generator CIF mostly in-house developments mostly custom systems cannot name an public or FOSS one