Subverting Trust in Windows - A Case Study of the How and Why of Engaging in Security Research
via YouTube
Overview
Syllabus
Introduction
What is a typical hacker talk
What this video is about
About me
Technical Meet
Dynamic Analysis
Frustration
Slow Down
signature validation
additional tools
cryptographic guarantees
digital signatures for code
who should I trust
trust no one
lesson
Demo
My Thought Process
PowerShell
SIP
Investigating
Registry
Windows SDK
Implementation
Get Authentic Code Signature
Maybe not
Digital signatures
DB GUI
Device Guard Bypass
More Information
More Tools
My Expected Reaction
How to Validate Trust
Background
Questions
My Approach
My History with PowerShell
Meeting SubT
Meeting Device Guard
Next Steps
Distractions
Embracing shiny objects
Lessons from security research
Thank you