• Embed Doc
  • Readcast
  • Collections
  • CommentGo Back
Download
 
 Analyzing 0-day Hacker Tools Analyzing 0-day Hacker Tools(For Dummies)(For Dummies)
Dynamic Analysis of Windows BinariesDynamic Analysis of Windows BinariesJohnny Long Johnny Long  johnny  johnny ihackstuff ihackstuff .com.com
 
The ProblemThe Problem
Not everyoneNot everyones a programmer s a programmer 
Not all tools have been categorizedNot all tools have been categorized
TheTheestablishmentestablishmenttakes too long in sometakes too long in somecasescases
 – –
We need to know what this thing isWe need to know what this thing isASAP!ASAP!Oh, andOh, andwe donwe dont want to spend any money outsourcingt want to spend any money outsourcing…”…”
Even YOU could get a 0-dayEven YOU could get a 0-day
Some pros insist that this analysis isSome pros insist that this analysis isgeekgeekmagicmagic’…’…it doesnit doesnt have to be.t have to be.
 
RequirementsRequirements
It helps if you know:It helps if you know:
 – –
Windows concepts: files, registryWindows concepts: files, registry
 – –
Network concepts: Ports, subnets,Network concepts: Ports, subnets,connectionsconnections
 – –
Hacker tools: Backdoors, Trojans,Hacker tools: Backdoors, Trojans,RootkitsRootkits,,ExploitsExploits
Know the difference between toolKnow the difference between tooltypestypesso youso youcan spot trends and similaritcan spot trends and similarities when doingies when doingyour analysis.your analysis.
of 00

Leave a Comment

You must be to leave a comment.
Submit
Characters: ...
You must be to leave a comment.
Submit
Characters: ...