Загрузка страницы

CONFidence 2021: Malware development for advanced adversary simulation- Patryk Czeczko, Paweł Kordos

Advanced adversaries don't solely rely on available C&C frameworks and offensive tools - they craft custom, unique software that evades detections and covertly penetrate infected network. To stay ahead of the game and be able to simulate actual threat actors it's necessary to brush up on development skills while diving deep into malware TTPs.
During the talk we will demonstrate common techniques used by malicious software and leveraged by red/purple teams during adversary simulations, including: AV/EDR evasion, code injection, anti-sandbox and anti-debug techniques, polymorphic malware, dynamic API resolving, function unhooking and more.
Whether you are a red/purple teamer interested in custom tooling development or a defender who wants to understand how advanced malware operates you will surely find this topic interesting.
Website: https://confidence-conference.org
Facebook: https://www.facebook.com/confidence.conference
Twitter: https://twitter.com/confidenceconf

Видео CONFidence 2021: Malware development for advanced adversary simulation- Patryk Czeczko, Paweł Kordos канала PROIDEA Events
Показать
Комментарии отсутствуют
Введите заголовок:

Введите адрес ссылки:

Введите адрес видео с YouTube:

Зарегистрируйтесь или войдите с
Информация о видео
13 апреля 2022 г. 17:23:09
00:39:14
Яндекс.Метрика