In NTDLL I Trust - Process Reimaging and Endpoint Security Solution Bypass - E. Carroll - Hack in Paris - 2019

In NTDLL I Trust - Process Reimaging and Endpoint Security Solution Bypass - E. Carroll - Hack in Paris - 2019

Hack in Paris via YouTube Direct link

Introduction

1 of 29

1 of 29

Introduction

Class Central Classrooms beta

YouTube playlists curated by Class Central.

Classroom Contents

In NTDLL I Trust - Process Reimaging and Endpoint Security Solution Bypass - E. Carroll - Hack in Paris - 2019

Automatically move to the next video in the Classroom when playback concludes

  1. 1 Introduction
  2. 2 Relevance
  3. 3 attribution
  4. 4 about me
  5. 5 Agenda
  6. 6 What is Process Reimaging
  7. 7 AV Scanners
  8. 8 Process Reimaging
  9. 9 Mitre Attack Framework
  10. 10 Game of Thrones
  11. 11 Process Doppelganger
  12. 12 AP
  13. 13 Process Re Imaging
  14. 14 Weaponized Process Re Imaging
  15. 15 Summary
  16. 16 Image File Pointer Field
  17. 17 Summary Table
  18. 18 Attack vectors
  19. 19 Get process image
  20. 20 Run process
  21. 21 Rename process
  22. 22 Demo
  23. 23 Recap
  24. 24 Pros and Cons
  25. 25 Impact
  26. 26 Endpoint Security Solution
  27. 27 Protection Recommendations
  28. 28 Microsoft Update
  29. 29 Conclusion

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.