Explore the evolving landscape of cyber-warfare in this 25-minute conference talk by Cooper Quintin from EFF and Michael Flossman from Lookout. Delve into the world of "Dark Caracal," an advanced persistent threat (APT) nation-state actor targeting global entities across multiple platforms, including mobile devices. Learn about the PALLAS trojanized apps, their capabilities, and attack vectors. Understand the concept of "surveillance on the cheap" and premium surveillanceware. Examine infection vectors, and gain insights into the Bandook malware, including its unpacking process, Windows C2 servers, and communication methods. Finally, discover the C2 communication techniques employed by CrossRAT.
Overview
Syllabus
Intro
DARK CARACAL
OVERVIEW
PALLAS - TROJANIZED APPS
PALLAS - CAPABILITIES
ATTACK VECTORS
PALLAS SUMMARY
SURVEILLANCE ON THE CHEAP
PREMIUM SURVEILLANCEWARE
INFECTION VECTORS
BANDOOK - UNPACKING
WINDOWS C2 SERVERS
BANDOOK - C2 COMMUNICATION
CROSSRAT - C2 COMMUNICATION
Taught by
Kaspersky