Clickfix detection, KnowBe4 Automation and MetaStealer Config Extraction

Clickfix detection, KnowBe4 Automation and MetaStealer Config Extraction

Source: YouTube · VMRay · published Feb 2, 2026 · 42:19

Cybersecurity
No ratings yet Log in to rate
Transcript Available
Description

BLUF: This webinar kickstarts the 2026 detection and intelligence highlights series, focusing on the rationale behind recent WTI, VMRA, and Yara rule updates 1:13.

Key Takeaways:
• The session aims to provide a digestible look at what the labs team has shipped, emphasizing the "why" behind recent updates 1:55.
• The discussion covers the latest WTI (Windows Threat Intelligence) and VMRA (Vulnerability Management and Risk Assessment) thread identifiers 2:03.
• New Yara rules and detection methodologies are highlighted to improve threat visibility and response capabilities 2:08.

The presenters, R2 and Andre, aim to bridge the gap between technical detection updates and their practical application in threat hunting.

Sources:

  • 1:13 Introduction to the 2026 webinar series.
  • 1:55 Goal of explaining the labs team's recent work.
  • 2:03 Overview of WTI and VMRA identifiers.
  • 2:08 Mention of Yara rules and detection highlights.

Generate CPE Credits

Generate a professional CPE document from this video's transcript.

Estimated credit: 0.5 CPE hours

Estimate uses the video runtime (1 hour ≈ 1 CPE, rounded to the nearest 0.5, minimum 0.5, maximum 2.0). The final amount can be lower after review, never higher.

Topic: Cybersecurity. Commonly maps to: Security and Risk Management, Security Operations. Exact CISSP domains are assigned during generation.

CISSP Domain Mapping
Learning Objectives
Self-Assessment Questions
PDF Export Ready

Free account. One generation at a time, with a daily limit.

CPEBuddy is independent and not affiliated with or endorsed by ISC2, ISACA, or any certification body. Exports are formatted for common CPE submissions; acceptance is at your certification body's discretion.

Watch on YouTube

Transcript Preview

First 800 characters of the transcript

Hello everyone. We will wait for a minute. Um I still see people joining. Then we will start. All right, I think we can start right now. Hello everyone again and welcome. Uh we are kickstarting 2026 webinar series of detection and intelligence highlights. So I'm R2. I'm a senior PMM here and I'm joined today uh by my colleague Andre uh staff product manager. Uh it has been a little while since Andre was last on the session. So it's great to have him uh back on the stream uh today. Hi Andre. >> Hi Arto. Hello everyone. Thanks for inviting me. >> Of course. So I mean picking up exactly where we left off in December last month, our goal remains the same. So we want to provide a look at what our labs team has been um shipping uh in a digestible way. So focusing on the why behind the latest uh …