Honey, I Shrunk the Attack Surface - Adventures in Android Security Hardening
Offered By: Black Hat via YouTube
Course Description
Overview
Syllabus
Introduction
Agenda
Layers of Defense
Moving Parts
Key Principles
History
Windows Vista
Android
Modern Android Security
Attack Surface Management
We dodged a bullet
Preventing other bugs
Pwned Ubuntu
Required Capnet
Security Policy
What is Project Trouble
What happened in Project Trouble
Media Server Hardening
Stage Fright
Extracter Service
SetComp
Other Changes
DM Verity
Security Hardening Results
Stage Fright Bugs
Project Treble
Webview
KitKat
Linux Kernel
Kernel Vulnerability Research
IOctals
IOctals Filtering
Effects on Android
Mitigation
Case Study
Impact on Security
Other Attack Surface Reduction
Security Community Recognition
John Sawyer
Security Research Communities
Vulnerability Purchase Community
Jailbreak Prices
Price Parity
Project Zero Prize
WikiLeaks
The Future
Better Separation of Vendor Code
Summary
Taught by
Black Hat
Related Courses
Attack on Titan M, Reloaded - Vulnerability Research on a Modern Security ChipBlack Hat via YouTube Attacks From a New Front Door in 4G & 5G Mobile Networks
Black Hat via YouTube AAD Joined Machines - The New Lateral Movement
Black Hat via YouTube Better Privacy Through Offense - How to Build a Privacy Red Team
Black Hat via YouTube Whip the Whisperer - Simulating Side Channel Leakage
Black Hat via YouTube