Overview
Explore advanced kernel exploitation techniques in this conference talk that delves into bypassing Windows 10 kernel mitigations through page table manipulations. Learn about memory management, virtualization-based security, and the innovative "Turning Tables" technique. Gain insights into how this method compares to other kernel exploits and mitigations. Understand the goals, motivations, and building blocks behind this approach, and follow a detailed walkthrough of the technique in action.
Syllabus
Intro
WINDOWS 10 KERNEL EXPLOIT MITIGATIONS
MEMORY MANAGEMENT OVERVIEW
VIRTUALIZATION-BASED SECURITY
QUICK RECAP
GOALS AND MOTIVATION
TURNING TABLES BUILDING BLOCKS
TURNING TABLES TECHNIQUE WALKTHROUGH
TURNING TABLES VS KERNEL MITIGATIONS
TURNING TABLES VS OTHER TECHNIQUES
Taught by
BSidesLV