Silent Intruders: Dissecting EDR Bypass Strategies in APT Attacks - by Chao Wei-Chieh
Автор: Infosec In the City
Загружено: 2024-12-05
Просмотров: 1399
Описание:
Speaker: Chao Wei-Chieh, Senior Cyber Security Researcher, CyCraft
This talk explores how Advanced Persistent Threat (APT) groups employ sophisticated methods to bypass Endpoint Detection and Response (EDR) systems, a critical line of defense in modern cybersecurity.
We will delve into three real-world incidents, each showcasing a distinct evasion tactic: hooking EDR processes, disrupting EDR communication, and deploying EDR-mimicking malwares. By dissecting these techniques, we provide valuable insights for blue teams to enhance their defenses against evolving APT threats.
We conclude by discussing the broader cybersecurity implications and the need for continuous adaptation to counter these evolving threats.
For more information about Infosec In the City, SINCON https://www.infosec-city.com/
Повторяем попытку...
Доступные форматы для скачивания:
Скачать видео
-
Информация по загрузке: