© 1996-2024 JPCERT/CC
Details
Details
NTT Security Holdings
Rintaro Koike is a security analyst at NTT Security Holdings. He is engaged in threat research and malware analysis. In addition, he is the founder of "nao_sec" and is in charge of threat research. He focuses on APT attacks targeting East Asia and web-based attacks. He has been a speaker at VB, SAS, Botconf, AVAR and others.
NTT Security Holdings
Amata Anantaprayoon is a security analyst at NTT Security Holdings and specializes in real-time threat detection, incident response, detection engineering, and cyber threat research. Amata regularly shares his insights at leading conferences such as Virus Bulletin as well as at closed events as a key member of NTT´s Threat Intelligence research community.
Mizuho Financial Group, Inc.
Hiroyuki joined Mizuho Financial Group, Inc. in 2017 after working for a security company as a consultant. As a member of its CSIRT, he is engaged in a wide range of operations from incident handling, SOC management and planning to threat intelligence. He is also responsible for security measures against phishing and unauthorized Internet banking transactions.
Mizuho Financial Group, Inc.
Tsukasa joined Mizuho Financial Group, Inc. in 2014. After working in its sales department in some local branches and engaged in planning/operation of customer products (mainly Internet banking), he moved to the current cyber security position. He first started with the overall security for the Internet banking system and currently oversees cyber security incident response including phishing.
Mizuho Financial Group, Inc.
Takuya joined Mizuho Financial Group, Inc. in 2020. In his previous position, he worked as a malware and forensic analyst as well as SOC operation lead. At present, he is in charge of log investigation and malware analysis, while operating and developing its threat intelligence collection system.
NSHC
Hankuk Jo is a researcher at the Threat Research Lab of NSHC, specializing in cybersecurity and threat intelligence. He is passionate about sharing his insights and primarily focuses on analyzing the tactics, techniques, and procedures (TTPs) employed by cyber attackers, leveraging threat intelligence data.
NSHC
Sangyoon Yoo is a seasoned professional in the field of cyber threat intelligence and research, currently working at the Threat Research Lab of NSHC. With a strong background in analyzing and researching various cybersecurity threats, Sangyoon has developed expertise in threat intelligence, game hacking tools, and malware analysis.
NSHC
Jeonghee Ha is a researcher at the Threat Research Lab of NSHC. Previously, JeongHee worked as an Incident Response Analyst and also has experience in CERT, analyzing threat events and providing first response. Jeonghee is primarily interested in threat data related to cybercrime groups and has a strong interest in digital forensic techniques.
LAC Co., Ltd
Takahiro is a malware analyst at Cyber Emergency Center in LAC Co., Ltd. He teaches at LAC Security Academy and authors some related publications. He has presented at international conferences such as PACSEC, AVAR, HITCON, Virus Bulletin and Black Hat USA Arsenal.
Trend Micro
Theo Chen is a Senior Threat Researcher at Trend Micro, bringing over five years of comprehensive experience in the cybersecurity domain. His areas of expertise include penetration testing, malware analysis, and threat hunting, with a strong focus on understanding and mitigating advanced cyber threats. Throughout his career, Theo has been involved in multiple initiatives aimed at strengthening organizational security, focusing on detecting advanced threats and designing proactive defense strategies. Currently, He specializes in tracking APT groups, particularly those associated with Chinese-speaking actors. His work involves in-depth analysis of emerging cyber threats and TTPs employed by these sophisticated adversaries.
Trend Micro
Leon Chang is a Senior Threat Researcher at Trend Micro. His major areas of research include APT campaign tracking, threat intelligence and malware analysis. He has also been a speaker at international conferences, including Black Hat Asia 2022, JSAC 2021/2022, CYBERSEC and AISA, etc.
Financial Security Institute
He is the CSIRT Lead at the Financial Security Institute in South Korea, with over two decades of experience in cybersecurity focused on the financial sector. His expertise spans vulnerability assessments, penetration testing, security operations, and incident response, ensuring robust defenses against evolving cyber threats. Beyond his primary role, he actively tracks Democratic People's Republic of Korea (DPRK) state-sponsored threat actors as a personal side project, managing the website lazarus.day and the X (formerly Twitter) account lazarusholic, where he shares in-depth analysis and insights on these cyber adversaries.
TeamT5
Yi-Chin Chuang is a threat intelligence researcher at TeamT5. She is passionate about reverse engineering and malware analysis. Her current research focuses on APT threats within the APAC region. She has shared her research findings at Underground Economy, JSAC, CYBERSEC, and TAS.
TeamT5
Yu-Tung Chang is a Threat Intelligence Researcher from TeamT5. He is interested in reverse engineering, vulnerability exploiting and malware analysis. He was engaged in network attacks research and rule writing. Currently, his research focuses on cyber threat intelligence in the East Asia region. He has spoken at Code Blue, TAS and JSAC.
ITOCHU Cyber & Intelligence Inc.
Satoshi engages in incident response and threat analysis at ITOCHU Cyber & Intelligence Inc.
ITOCHU Cyber & Intelligence Inc.
Shuhei engages in incident response and threat analysis at ITOCHU Cyber & Intelligence Inc.
ITOCHU Cyber & Intelligence Inc.
Yusuke engages in incident response and threat analysis at ITOCHU Cyber & Intelligence Inc.
Recruit Co.
Yuji joined Recruit Technologies Co.,Ltd in 2016. As a member of Recruit-CSIRT, he leads security incident response in Recruit. In April 2021, he launched the Cybercrime Countermeasures Group, specializing in analysis and investigation of fraudulent credit card use and spoofed logins for the purpose of cybercrime countermeasures. CISSP, GCIH, GCTI, GNFA.
Recruit Co.
Masaki is engaged in vulnerability assessment and penetration testing at Recruit Co. Currently, he focuses on security incident response, monitoring and threat hunting at Recruit-CSIRT.
ESET
Dominik is a malware researcher at ESET. Coming from academia, he joined ESET in 2019 to help track the activities of APT groups with a particular focus on the China-aligned group MirrorFace. He previously presented at AVAR and also at JSAC 2024. In his spare time, he plays video games and watches bad movies.
Tokio Marine Holdings, Inc.
Tomohisa has experienced penetration testing, security audit and incident response at a security company since 2009. Currently, at Tokio Marine Holdings, Inc., he specializes in security strategy planning, security architecture, threat intelligence analysis and incident response. He is a committee member for the Information-Technology Engineers Examination and Registered Information Security Specialist Examination, as well as a Cyber Security Expert at the Ministry of Internal Affairs and Communications. He also authors and translates some technical publications.
Tokio Marine Holdings, Inc.
Tatsuya was a Technical Official at the National Police Agency for 16 years, specializing in cyber crime and cyber terrorism. While seconded to the Metropolitan Police Department, he dealt with international criminal organizations. After moving to a security company, he was involved in forensics, intelligence and training for government agencies. Since 2022, he oversees security operations, incident response and security measures for local and overseas group companies at Tokio Marine Holdings, Inc.
Tokio Marine Holdings, Inc.
Hiroyuki started his career at Tokio Marine Nichido Systems in 2009. He had been tasked with cyber security measures for its group companies in 2016. Being seconded to Tokio Marine Holdings, Inc. since 2023, he is now responsible for security measures for the CSIRT and both local and overseas group companies. OSCP, CISSP, CISA, RISS and ITILv3Expert.