Exposing Bootkits with BIOS Emulation
Offered By: Black Hat via YouTube
Course Description
Overview
Explore advanced techniques for detecting and countering bootkits through BIOS emulation in this Black Hat conference talk. Delve into the world of stealth malware and learn how to expose threats that attempt to subvert modern security features. Discover methods to regain control of compromised machines by examining deep internal structures of operating systems. Analyze the challenges posed by security measures in 64-bit Windows versions, including Driver Signature Enforcement and PatchGuard, and understand how bootkits exploit vulnerabilities in legacy BIOS systems. Gain insights into innovative approaches combining low-level anti-rootkit techniques, emulation, and heuristic detection logic to identify anomalies in boot sectors and uncover the presence of bootkits.
Syllabus
Exposing Bootkits with BIOS Emulation
Taught by
Black Hat
Related Courses
Attack on Titan M, Reloaded - Vulnerability Research on a Modern Security ChipBlack Hat via YouTube Attacks From a New Front Door in 4G & 5G Mobile Networks
Black Hat via YouTube AAD Joined Machines - The New Lateral Movement
Black Hat via YouTube Better Privacy Through Offense - How to Build a Privacy Red Team
Black Hat via YouTube Whip the Whisperer - Simulating Side Channel Leakage
Black Hat via YouTube