Artwork

Firo Solutions LTD에서 제공하는 콘텐츠입니다. 에피소드, 그래픽, 팟캐스트 설명을 포함한 모든 팟캐스트 콘텐츠는 Firo Solutions LTD 또는 해당 팟캐스트 플랫폼 파트너가 직접 업로드하고 제공합니다. 누군가가 귀하의 허락 없이 귀하의 저작물을 사용하고 있다고 생각되는 경우 여기에 설명된 절차를 따르실 수 있습니다 https://ko.player.fm/legal.
Player FM -팟 캐스트 앱
Player FM 앱으로 오프라인으로 전환하세요!

Ben Kurtz - Golang Malware part 2

1:06:48
 
공유
 

Manage episode 334221762 series 3370924
Firo Solutions LTD에서 제공하는 콘텐츠입니다. 에피소드, 그래픽, 팟캐스트 설명을 포함한 모든 팟캐스트 콘텐츠는 Firo Solutions LTD 또는 해당 팟캐스트 플랫폼 파트너가 직접 업로드하고 제공합니다. 누군가가 귀하의 허락 없이 귀하의 저작물을 사용하고 있다고 생각되는 경우 여기에 설명된 절차를 따르실 수 있습니다 https://ko.player.fm/legal.

Ben Kurtz - Golang Malware part 2

Topics covered:

Golang

Hells gate, direct system calls on windows

How system calls are normally done in windows, Windows Kernel

Evading anti malware detection on Windows with Banana Phone

How to get started writing c2's in golang.

Sliver, Opensource golang command and control.

Red team mindset

Evolution of programmers, bad patterns

CVE's, common vulnerability enumeration number

Auditing source code

Javascript frameworks

Cross site scripting, SQL injection and XXE(Xml External Entity) for scanning internal networks and exfiltrating data.

Building secure code bases

Security Engineers

Supervisory control and data acquisition (SCADA)

log4j

Remote of execution and directory traversal in Java, Java's file constructor, LDAP and DirContext

Golang for micro services

Python

Common bad patterns

LDAP injection

Modern security nightmares

Remote debug protocols

String concatenation

Resistance to current modern implementation and safer framework.

Finding bugs in games that can be used to attack power-plants.

Dependency management

Backdoor factory

Bettercap

Man in the middle

Spoofing BGP

BGP hijacks

Links:

https://github.com/Binject

https://github.com/C-Sto/BananaPhone

https://github.com/BishopFox/sliver

https://cve.mitre.org/

https://owasp.org/www-community/vulnerabilities/XML_External_Entity_(XXE)_Processing

https://www.youtube.com/watch?v=FkuUpg5FO2g

https://en.wikipedia.org/wiki/SCADA

https://en.wikipedia.org/wiki/Log4j

https://www.coding-bootcamps.com/blog/build-containerized-applications-with-golang-on-kubernetes.html

https://docs.oracle.com/javase/8/docs/api/index.html?javax/naming/directory/DirContext.html

https://apache.org/foundation/foundation-projects.html

https://docs.oracle.com/javase/8/docs/api/index.html?javax/management/JMX.html

https://en.wikipedia.org/wiki/Java_Debug_Wire_Protocol

https://www.freecodecamp.org/news/big-o-notation-why-it-matters-and-why-it-doesnt-1674cfa8a23c/

https://github.com/bettercap/bettercap

https://www.bettercap.org/

https://bgpmon.net/

https://en.wikipedia.org/wiki/BGP_hijacking

https://labs.ripe.net/author/vastur/bgplay-integrated-in-ripestat/

https://www.symbolcrash.com/podcast/

https://www.youtube.com/symbolcrash

  continue reading

20 에피소드

Artwork

Ben Kurtz - Golang Malware part 2

Hacker Talk

14 subscribers

published

icon공유
 
Manage episode 334221762 series 3370924
Firo Solutions LTD에서 제공하는 콘텐츠입니다. 에피소드, 그래픽, 팟캐스트 설명을 포함한 모든 팟캐스트 콘텐츠는 Firo Solutions LTD 또는 해당 팟캐스트 플랫폼 파트너가 직접 업로드하고 제공합니다. 누군가가 귀하의 허락 없이 귀하의 저작물을 사용하고 있다고 생각되는 경우 여기에 설명된 절차를 따르실 수 있습니다 https://ko.player.fm/legal.

Ben Kurtz - Golang Malware part 2

Topics covered:

Golang

Hells gate, direct system calls on windows

How system calls are normally done in windows, Windows Kernel

Evading anti malware detection on Windows with Banana Phone

How to get started writing c2's in golang.

Sliver, Opensource golang command and control.

Red team mindset

Evolution of programmers, bad patterns

CVE's, common vulnerability enumeration number

Auditing source code

Javascript frameworks

Cross site scripting, SQL injection and XXE(Xml External Entity) for scanning internal networks and exfiltrating data.

Building secure code bases

Security Engineers

Supervisory control and data acquisition (SCADA)

log4j

Remote of execution and directory traversal in Java, Java's file constructor, LDAP and DirContext

Golang for micro services

Python

Common bad patterns

LDAP injection

Modern security nightmares

Remote debug protocols

String concatenation

Resistance to current modern implementation and safer framework.

Finding bugs in games that can be used to attack power-plants.

Dependency management

Backdoor factory

Bettercap

Man in the middle

Spoofing BGP

BGP hijacks

Links:

https://github.com/Binject

https://github.com/C-Sto/BananaPhone

https://github.com/BishopFox/sliver

https://cve.mitre.org/

https://owasp.org/www-community/vulnerabilities/XML_External_Entity_(XXE)_Processing

https://www.youtube.com/watch?v=FkuUpg5FO2g

https://en.wikipedia.org/wiki/SCADA

https://en.wikipedia.org/wiki/Log4j

https://www.coding-bootcamps.com/blog/build-containerized-applications-with-golang-on-kubernetes.html

https://docs.oracle.com/javase/8/docs/api/index.html?javax/naming/directory/DirContext.html

https://apache.org/foundation/foundation-projects.html

https://docs.oracle.com/javase/8/docs/api/index.html?javax/management/JMX.html

https://en.wikipedia.org/wiki/Java_Debug_Wire_Protocol

https://www.freecodecamp.org/news/big-o-notation-why-it-matters-and-why-it-doesnt-1674cfa8a23c/

https://github.com/bettercap/bettercap

https://www.bettercap.org/

https://bgpmon.net/

https://en.wikipedia.org/wiki/BGP_hijacking

https://labs.ripe.net/author/vastur/bgplay-integrated-in-ripestat/

https://www.symbolcrash.com/podcast/

https://www.youtube.com/symbolcrash

  continue reading

20 에피소드

모든 에피소드

×
 
Loading …

플레이어 FM에 오신것을 환영합니다!

플레이어 FM은 웹에서 고품질 팟캐스트를 검색하여 지금 바로 즐길 수 있도록 합니다. 최고의 팟캐스트 앱이며 Android, iPhone 및 웹에서도 작동합니다. 장치 간 구독 동기화를 위해 가입하세요.

 

빠른 참조 가이드

탐색하는 동안 이 프로그램을 들어보세요.
재생