Class Central is learner-supported. When you buy through links on our site, we may earn an affiliate commission.

YouTube

All You Always Wanted to Know About Antiviruses

Hack In The Box Security Conference via YouTube

Overview

Explore the inner workings of antivirus software in this comprehensive conference talk from the Hack In The Box Security Conference. Delve into the research findings on antivirus internals, demystifying their operation and examining the impact of design decisions on user and company security. Analyze multiple commercial antivirus products across Windows, Linux, and Android platforms, uncovering new attack vectors and defensive strategies. Distinguish between antivirus engines and products, examining their structure and component usage in various detection steps. Learn about static and dynamic detection methods, monitoring level configurations, and hidden backend features. Investigate the use of whitelists, blacklists, and signatures in antivirus software, including an algorithm for identifying signature-based detections. Discuss the trade-offs involved in implementing different detection techniques and real-time monitoring. Discover how antiviruses handle network monitoring, including proxy setup, man-in-the-middle scanning, and SSL certificate manipulation. Examine update frequencies and gain insights into the often-overlooked aspects of antivirus operation that impact user security.

Syllabus

#HITB2023AMS #COMMSEC D1 - All You Always Wanted To Know About AntiViruses - Marcus Botacin

Taught by

Hack In The Box Security Conference

Reviews

Start your review of All You Always Wanted to Know About Antiviruses

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.