YoVDO

The Trails of WINDSHIFT APT

Offered By: Hack In The Box Security Conference via YouTube

Tags

Hack In The Box Security Conference Courses Reverse Engineering Courses Malware Analysis Courses Threat Hunting Courses Spear Phishing Courses Cyber Espionage Courses

Course Description

Overview

Explore the intricate workings of the WINDSHIFT APT, an elusive cyber espionage actor, in this 55-minute conference talk from the Hack In The Box Security Conference. Delve into the unique characteristics that set WINDSHIFT apart from other APT groups, including their focused targeting of specific individuals for surveillance purposes and their difficult-to-attribute modus operandi. Examine their advanced spear phishing infrastructure, which employs both email and SMS to track targets during reconnaissance and credential harvesting phases. Uncover the rare instances of malware deployment by WINDSHIFT, including the newly discovered macOS malwares WINDTAIL and WINDTAPE. Learn about their distinctive infection techniques that exploit native macOS functionalities for automatic malware propagation. Follow the presenter, Taha Karim, a Principal Malware researcher at Dark Matter LLC, as he guides you through the reconnaissance, credentials harvesting, malware spreading, disappearing, and escape phases employed by this sophisticated threat actor.

Syllabus

#HITBGSEC 2018 COMMSEC: The Trails Of WINDSHIFT APT - Taha Karim


Taught by

Hack In The Box Security Conference

Related Courses

Advanced Network Security
LearnQuest via Coursera
Advanced Threat Hunting and Incident Response
LearnQuest via Coursera
AWS SimuLearn: Threat Hunting
Amazon Web Services via AWS Skill Builder
Busca de ameaças com a implantação do AWS Network Firewall (Português) | Threat Hunting with AWS Network Firewall Deployment (Portuguese)
Amazon Web Services via AWS Skill Builder
Penetration Testing, Threat Hunting, and Cryptography
IBM via Coursera