Hello 1994
Offered By: Recon Conference via YouTube
Course Description
Overview
Explore a 28-minute conference talk from Recon2023 that delves into a new variant of PlugX, a long-standing remote access tool with Chinese origins. Discover how this malware leverages older Windows APIs through Component Object Model (COM) for innovative staging and concealment techniques. Learn about its ability to create inaccessible folders, evade security scans, and spread across networks via USB air-gap jumping. Gain insights into the effectiveness of old technology in modern cyber threats, understand the exploitation of COM and Windows Explorer, and consider potential areas for further research in this often-overlooked aspect of cybersecurity.
Syllabus
Recon2023 Michael Harbison Hello 1994
Taught by
Recon Conference
Related Courses
Harnessing Intel Processor Trace on Windows for FuzzRecon Conference via YouTube Reverse Engineering Satellite Based IP Content Distribution
Recon Conference via YouTube Reverse Engineering Windows Defender's JavaScript Engine
Recon Conference via YouTube DIY ARM Debugger for Wi-Fi Chips
Recon Conference via YouTube Subverting Your Server Through Its BMC - The HPE iLO4 Case
Recon Conference via YouTube