Overview
Syllabus
RSAConference 2020 San Francisco February 24-28 Moscone Center
Contents
What is Supply Chain Attack?
ASUS Supply Chain Attack: Overview ASUS Update Server
ASUS Supply Chain Attack: Type - B
ASUS Supply Chain Attack: Select Infection PC
Case Study: Supply Chain Attack
Case A: Overview
Case A: Certificate signing
Case A: PlugX malware
Case B: Overview
Case B: Plug X malware
Case B: Code Tampering
Case B: Certificate signing
Case B: DGA Algorithm
Case B: Select Infection PC
Case C: Overview
Case C: Hiding attacker IP
Case C: PlugX malware
Case C: Certificate signing
Case C: Select Infection PC • Proxy_Pass : Setting variables set for proxy in the Nginx software
Case C: Distribution Additional Malware
Case D: Overview
Case D: PlugX malware
Case D: Hiding attacker IP
Case E: Overview
Case E: Hijacking account
Association Analysis: Select Infection PC
Association Analysis: Code Tampering ASUS
Association Analysis: Shadow Pad
Association Analysis: PlugX module
Association Analysis: Hiding attacker IP
Association Analysis: Attacker IP
Attack Features and Strategies: ATT&CK Matrix
Apply What You Have Learned Today
Taught by
RSA Conference