From Gut to Gold Standard: The Admiralty System in CTI
From Your Gut to a Gold Standard: Introducing the Admiralty System in CTI 🎙️ Freddy Murstad, Senior Threat Intelligence Advisor, Intelligence Tradecraft 📍 Presented at SANS CTI Summit 2026 This presentation introduces the Admiralty System, a time-tested framework originally used for evaluating intelligence. Today, this system offers CTI professionals a robust method for assessing the reliability of Cyber Threat Intelligence (CTI) in an increasingly complex digital landscape. The presentation will highlight its adaptability for addressing modern cybersecurity challenges and explore the system's historical context. A key focus will be on understanding the crucial distinction between Source Reliability (the trustworthiness of the origin of the information) and Information Credibility (the trustworthiness of the data itself), two core components of the Admiralty System. Using a real-world scenario, I will demonstrate how different sources and information are rated, and using QR-codes, enabling participants to develop a practical understanding of the system's application. The presentation will also discuss the benefits of implementing the Admiralty System for CTI professionals, including enhanced threat prioritisation, improved resource allocation, more effective collaboration through a shared language, and potential for automation. Furthermore, the presentation will address potential challenges in applying the Admiralty System, such as the rapid evolution of cyber threats, introduction of AI in CTI analysis, the overwhelming volume of threat data, and the element of subjectivity in assigning ratings. Strategies for mitigating these challenges, like regular calibration sessions and integration of automation, will also be discussed. By attending this presentation, CTI professionals will gain valuable insights into leveraging the Admiralty System to enhance the reliability and actionability of their cyber threat intelligence.

Hunting North Korea’s Contagious Interview Operation

NEW2CTI | Operationalizing CTI: From PIRs to Priority TTPs

Phil Venables on AI for Security & Security for AI: the Future of Agentic Risk | NHIcon 2026

Operation Trashpanda: Disrupting RaccoonO365

One Piece at a Time: A Guide to Building a CTI Program

OWASP's Top 10 Ways to Attack LLMs: AI Vulnerabilities Exposed

THESE Apps Are SPYING on You — Shut Them Off NOW!

Can’t Stop, Won’t Stop: TA584 Innovates Initial Access

NEW2CTI | Connecting the Dots: Incident to Campaign Intel

Something is jamming GPS over Europe. Here's what we found

This is not the AI we were promised | The Royal Society

Why Building AI Data Centres Isn’t Working Anymore

The C2 You Didn’t See Coming: Redefining Stealth

Quantum Just Killed AI Data Centers

AI Bubble: How AI's push towards IPOs became a death drive | Ed Zitron

The Biggest Lies in Cybersecurity

Andrej Karpathy: From Vibe Coding to Agentic Engineering w/ Stephanie Zhan

Attacking AI - Jason Haddix - NDC Security 2026

Scott Pelley: What Has Happened to ‘60 Minutes’ Is a Tragedy | The Interview

