TIG Tecninf Intelligence Group

ACTIVE CRIME RESEARCH, BEFORE YOU NEED IT.

TIG

Certified analysts examine sensitive information and actively participate in sharing chats, request info on forums, monitor open C&C servers and feed the various connectors of the TCI.

FCI

Futures criminal intelligence

Below are some of the numerous futures available in the console:

01

Dark web collection

  • DarkWeb Data Collection
  • Case based profiling
  • Search intelligence
  • Leaked Account Search
  • Compromised data search
  • Content analysis
  • Metadata extraction
  • File downloadable
  • Osint technique embedded
02

Case profiling

  • Creation of cases associated with a search of words, e-mail and account portal.
  • The case is automatically taken over by the console.
  • Within the case you can associate the search techniques and the scenarios where to run them.
03

Compromised data search

  • Rationalise internal and external information flows.
  • Expand the management of information and external relations.
  • Logically reorganise users.
  • Simplify and modernise access to corporate applications.
  • Uniform web applications.
  • Introduce collaborative web systems.
  • Locate useful corporate information.
  • Update content and information in real-time.
04

Data history

  • The Data History report details the history of correlation and identification of the sensitive data found.
  • The modules that participated in the investigation are listed.
  • All alerts correlated to the search queries are listed.
05

HTML Viewer

The Viewer and html debug help highlight malicious code or discover obfuscated code.

06

File downloadable

  • Possibility to download the cases, the payloads traced and the reports.
  • All the objects in the console are downloadable.
07

Metadata extraction

For each intercepted payload, the metadata is extracted, searching for IOC or data obfuscated in the code.

08

Keyword monitoring

  • Actively monitors sensitive words across all analysis scenarios.
  • The queries remain active over time or are timed.
  • They return results alerting via e-mail or SMS.
09

OSINT

  • The best-known Osint techniques are encapsulated in the search engines.
  • This allows the obtained results to be categorised.
  • The Osint queries work across all scenarios in the console, on all cases configured autonomously, and automatically in an always-active cycle.

Conclusions

The tight interception mesh and the active simulation work of the TIG create a new protection measure that goes beyond monitoring.

Actively, through simulation, it searches for and discovers criminal IT activities.