Completed
Get process image
Class Central Classrooms beta
YouTube videos curated by Class Central.
Classroom Contents
In NTDLL I Trust - Process Reimaging and Endpoint Security Solution Bypass - E. Carroll - Hack in Paris - 2019
Automatically move to the next video in the Classroom when playback concludes
- 1 Introduction
- 2 Relevance
- 3 attribution
- 4 about me
- 5 Agenda
- 6 What is Process Reimaging
- 7 AV Scanners
- 8 Process Reimaging
- 9 Mitre Attack Framework
- 10 Game of Thrones
- 11 Process Doppelganger
- 12 AP
- 13 Process Re Imaging
- 14 Weaponized Process Re Imaging
- 15 Summary
- 16 Image File Pointer Field
- 17 Summary Table
- 18 Attack vectors
- 19 Get process image
- 20 Run process
- 21 Rename process
- 22 Demo
- 23 Recap
- 24 Pros and Cons
- 25 Impact
- 26 Endpoint Security Solution
- 27 Protection Recommendations
- 28 Microsoft Update
- 29 Conclusion