YoVDO

EDR Evasion Primer for Red Teamers

Offered By: Hack In The Box Security Conference via YouTube

Tags

Hack In The Box Security Conference Courses Cybersecurity Courses Penetration Testing Courses Injection Attacks Courses

Course Description

Overview

Dive into a comprehensive conference talk on Endpoint Detection and Response (EDR) evasion techniques for red teamers. Explore the inner workings of EDRs and learn effective circumvention methods gathered from years of intense red teaming experience. Discover test lab results comparing various EDR solutions, including zero-day vulnerabilities. Gain insights from reverse engineering efforts to understand EDR internal operations. Master successful attack techniques and EDR evasion methodologies, such as leveraging Windows APIs for injection attacks, unhooking functions, and implementing custom syscalls. Benefit from valuable insights that will help both defenders and testers better understand EDR reliance and identify organizational weak points more efficiently. Presented by Jorge Gimenez, a Security Consultant specializing in infrastructure pentesting and Red Teaming, and Karsten Nohl, a cryptographer and security researcher with expertise in breaking proprietary systems.

Syllabus

#HITB2022SIN EDR Evasion Primer For Red Teamers - Jorge Gimenez & Karsten Nohl


Taught by

Hack In The Box Security Conference

Related Courses

Network Security
Georgia Institute of Technology via Udacity
Proactive Computer Security
University of Colorado System via Coursera
Identifying, Monitoring, and Analyzing Risk and Incident Response and Recovery
(ISC)² via Coursera
Hacker101
HackerOne via Independent
CNIT 127: Exploit Development
CNIT - City College of San Francisco via Independent