The Trails of WINDSHIFT APT
Offered By: Hack In The Box Security Conference via YouTube
Course Description
Overview
Explore the intricate workings of the WINDSHIFT APT, an elusive cyber espionage actor, in this 55-minute conference talk from the Hack In The Box Security Conference. Delve into the unique characteristics that set WINDSHIFT apart from other APT groups, including their focused targeting of specific individuals for surveillance purposes and their difficult-to-attribute modus operandi. Examine their advanced spear phishing infrastructure, which employs both email and SMS to track targets during reconnaissance and credential harvesting phases. Uncover the rare instances of malware deployment by WINDSHIFT, including the newly discovered macOS malwares WINDTAIL and WINDTAPE. Learn about their distinctive infection techniques that exploit native macOS functionalities for automatic malware propagation. Follow the presenter, Taha Karim, a Principal Malware researcher at Dark Matter LLC, as he guides you through the reconnaissance, credentials harvesting, malware spreading, disappearing, and escape phases employed by this sophisticated threat actor.
Syllabus
#HITBGSEC 2018 COMMSEC: The Trails Of WINDSHIFT APT - Taha Karim
Taught by
Hack In The Box Security Conference
Related Courses
Advanced Network SecurityLearnQuest via Coursera Advanced Threat Hunting and Incident Response
LearnQuest via Coursera AWS SimuLearn: Threat Hunting
Amazon Web Services via AWS Skill Builder Busca de ameaças com a implantação do AWS Network Firewall (Português) | Threat Hunting with AWS Network Firewall Deployment (Portuguese)
Amazon Web Services via AWS Skill Builder Penetration Testing, Threat Hunting, and Cryptography
IBM via Coursera