Stanley Cheng
Stanley Cheng
Cyber Security Researcher
CyCraft Technology

Stanley Cheng is a cybersecurity researcher at Cycraft Technology and focuses on the automatic analysis of malware, threat hunting, and web security. He was a speaker at HITCON ENT, CyberSec.

SPEECH
5/16 (Thu.) 16:30 - 17:00 7F 701F Zero Trust Forum
Public CTI Source Pollution - A Hidden Threat in Cybersecurity

Businesses face ZTA hurdles due to external service reliance. Gartner's 2026 forecast highlights asset tracking challenges, leading to data aggregation from sources like CMDB, CISA's KEV, NIST NVD. Stringent management of these sources is crucial for resilient security in evolving threats.

In this talk, we will discuss the risk of source pollution increases. If any source is susceptible to manipulation, a successful modification will perhaps lead to information confusion, unwanted downloads, or even catastrophic security events such as DoS attack (faked GeoIP) and arbitrary code execution.