YoVDO

Invoke-DOSfuscation - Techniques for CMD Obfuscation

Offered By: Black Hat via YouTube

Tags

Black Hat Courses Cybersecurity Courses Malware Analysis Courses

Course Description

Overview

Dive deep into advanced cmd[.]exe obfuscation techniques in this Black Hat Asia 2018 Best Briefing presentation. Explore multi-faceted obfuscation opportunities, starting with carets, quotes, and stdin argument hiding. Extrapolate more complex methods, including FIN7's string removal/replacement concept and two novel obfuscation and full encoding techniques performed entirely in cmd[.]exe's memory. Learn three approaches for obfuscating binary names from static and dynamic analysis, and discover lesser-known cmd[.]exe replacement binaries. Gain valuable insights into S-level CMD obfuscation strategies to enhance your understanding of cybersecurity techniques and defenses.

Syllabus

Invoke-DOSfuscation: Techniques FOR %F IN (-style) DO (S-level CMD Obfuscation)


Taught by

Black Hat

Related Courses

Attack on Titan M, Reloaded - Vulnerability Research on a Modern Security Chip
Black Hat via YouTube
Attacks From a New Front Door in 4G & 5G Mobile Networks
Black Hat via YouTube
AAD Joined Machines - The New Lateral Movement
Black Hat via YouTube
Better Privacy Through Offense - How to Build a Privacy Red Team
Black Hat via YouTube
Whip the Whisperer - Simulating Side Channel Leakage
Black Hat via YouTube