Defending-off-the-land will show novel, open-source techniques to use existing Windows OS capabilities to detect and alert on attackers–without needing to deploy yet another agent. Attackers use "living-off-the-land" techniques to prevent detection–using existing OS capabilities to further their offensive goals. Defenders have traditionally relied upon vendor products to keep attackers at bay: EDR, IPS, XDR, etc. These products augment endpoints and networks with 3rd party agents and appliances to detect and evict would-be attackers. In this talk we show nine capabilities from a spectrum of options to improve endpoint instrumentation and defense using in-built OS capabilities.... By: Jacob Torrey & Marco Slaviero Full Abstract and Presentation Materials: https://ift.tt/IcJi8kP
source https://www.youtube.com/watch?v=Brd-p6N0alI
Subscribe to:
Post Comments (Atom)
-
Germany recalled its ambassador to Russia for a week of consultations in Berlin following an alleged hacker attack on Chancellor Olaf Scho...
-
Android’s May 2024 security update patches 38 vulnerabilities, including a critical bug in the System component. The post Android Update ...
No comments:
Post a Comment