Detecting -Un-Intentionally Hidden Injected Code by Examining Page Table Entries
Offered By: Black Hat via YouTube
Course Description
Overview
Explore advanced techniques for detecting hidden injected code through page table entry analysis in this 27-minute Black Hat conference talk. Delve into hiding methods that prevent executable pages containing malicious code from being detected by current memory forensic tools. Examine how these techniques can be deliberately implemented by malware to conceal injected code or inadvertently triggered by the operating system's paging mechanism. Learn from security expert Frank Block as he presents cutting-edge strategies for uncovering intentionally and unintentionally hidden code, enhancing your ability to conduct thorough memory forensics and improve malware detection capabilities.
Syllabus
Detecting (un)Intentionally Hidden Injected Code by Examining Page Table Entries
Taught by
Black Hat
Related Courses
OS Analysis with VolatilityPluralsight Getting Started with Memory Forensics Using Volatility
Pluralsight Advanced Malware Analysis: Redux
Cybrary Introduction to Memory Forensics with Volatility 3
DFIRScience via YouTube Taking Memory Forensics to the Next Level
New York University (NYU) via YouTube