YoVDO

IBM - Trusteer Rapport - Does IBM Intentionally Backdoor Machines?

Offered By: 44CON Information Security Conference via YouTube

Tags

44CON Courses Windows Security Courses Security Vulnerabilities Courses

Course Description

Overview

Explore the security implications of IBM/Trusteer Rapport in this 36-minute conference talk from 44CON Information Security Conference. Delve into the potential risks associated with this security software, examining its code execution speed and various components. Analyze the Windows implementation, including RapportAegle.sys and the Rapport Bouncer. Investigate access control mechanisms and a specific vulnerability (CVE-2019-XXXX). Consider whether certain security issues might be intentional, and gain insights into the broader implications for system security and user trust.

Syllabus

Intro
About Me
Why is this still a decent topic?
Just how fast can Trusteer code?
The first of many
IBM Rapport - Windows
RapportAegle.sys
The Rapport Bouncer
Access Granted
OBJ_FORCE_ACCESS_CHECK NO
CVE-2019-XXXX
Intentional?


Taught by

44CON Information Security Conference

Related Courses

Supply Chain Unchained - How To Be A Bad SaaS
44CON Information Security Conference via YouTube
Aviation Security 101
44CON Information Security Conference via YouTube
The Anti-Checklist Manifesto
44CON Information Security Conference via YouTube
Why Are We Still Doing Authentication Wrong?
44CON Information Security Conference via YouTube
What Do Hackers See When They Look at the Clouds
44CON Information Security Conference via YouTube