ycliper

Популярное

Музыка Кино и Анимация Автомобили Животные Спорт Путешествия Игры Юмор

Интересные видео

2025 Сериалы Трейлеры Новости Как сделать Видеоуроки Diy своими руками

Топ запросов

смотреть а4 schoolboy runaway турецкий сериал смотреть мультфильмы эдисон
Скачать

Red Team | Weaponizing Windows Crash Dumps

Автор: SANS Institute

Загружено: 2026-02-17

Просмотров: 62

Описание: Red Team | Living Off the Crash: Weaponizing System-Generated Crash Dumps

🎙️ Jason Mull, Team Lead, Security Operations, Lockstep Technology Group
📍 Presented at SANS Hack & Defend Summit 2025

Endpoint protection systems regularly identify credential harvesting and session hijacking attacks, but crash dumps represent an unmonitored attack surface with the potential to contain the same valuable information. Windows crash dumps routinely preserve domain credentials, browser authentication tokens, and sensitive documents from multiple applications and sessions, yet organizations rarely consider their exploitation potential. This presentation demonstrates how offline analysis of these naturally occurring artifacts can lead to intelligence extraction using chained memory analysis tools after initial acquisition without ongoing endpoint interaction or detection.

Working outside established detection methods, this approach leverages crash dumps as ""living-off-the-land"" resources that bypass established security controls. The technique transforms overlooked system artifacts into valuable offensive capabilities, providing sustained access to organizational intelligence without triggering detection systems.

Не удается загрузить Youtube-плеер. Проверьте блокировку Youtube в вашей сети.
Повторяем попытку...
Red Team | Weaponizing Windows Crash Dumps

Поделиться в:

Доступные форматы для скачивания:

Скачать видео

  • Информация по загрузке:

Скачать аудио

Похожие видео

Red Team | Subverting macOS Apps and Security Controls

Red Team | Subverting macOS Apps and Security Controls

Keynote | The Augmented Era: Disrupt or be Disrupted

Keynote | The Augmented Era: Disrupt or be Disrupted

Сохраняйте секреты вне кода с помощью плагина HCP Vault Radar для VSCode.

Сохраняйте секреты вне кода с помощью плагина HCP Vault Radar для VSCode.

The 2 AM Call: A Ransomware Negotiator's Playbook with Wade Gettle

The 2 AM Call: A Ransomware Negotiator's Playbook with Wade Gettle

Blue Team | Unveiling Insider Threats Beyond the Logs

Blue Team | Unveiling Insider Threats Beyond the Logs

Fabrication Process Challenges. Develop new or build on existing process capability and/or capacity.

Fabrication Process Challenges. Develop new or build on existing process capability and/or capacity.

Dave Bacon: Google Quantum Computing Beyond Swag

Dave Bacon: Google Quantum Computing Beyond Swag

Blue Team | Intelligence-Driven Defense for the Real World

Blue Team | Intelligence-Driven Defense for the Real World

Blue Team | From Exploit to Risk: Scaling Purple Team Insights

Blue Team | From Exploit to Risk: Scaling Purple Team Insights

BSides DC 2019 - Hands-on Writing Malware in Go

BSides DC 2019 - Hands-on Writing Malware in Go

Основной доклад | Двигаясь вперед через неудачи: нейроразнообразие в киберпространстве

Основной доклад | Двигаясь вперед через неудачи: нейроразнообразие в киберпространстве

Top 10 Ways to Improve Active Directory Security Quickly

Top 10 Ways to Improve Active Directory Security Quickly

Blue Team | Determining Malice Through Context and Analytics

Blue Team | Determining Malice Through Context and Analytics

Красная команда | Роль ИИ в будущем исследования уязвимостей

Красная команда | Роль ИИ в будущем исследования уязвимостей

Red Team | MEDSHIELD: Threat Modeling for Medical IoT

Red Team | MEDSHIELD: Threat Modeling for Medical IoT

Role-Play Your Way Into Cyber: Hands-On with KC7

Role-Play Your Way Into Cyber: Hands-On with KC7

Red Team | Looting Credentials from Modern Browsers

Red Team | Looting Credentials from Modern Browsers

Blue Team | Final Thoughts and Q&A

Blue Team | Final Thoughts and Q&A

Blue Team | Hunting Cloud Persistence Without Malware

Blue Team | Hunting Cloud Persistence Without Malware

Keynote | Blue Team | SOC of the Future…the Future Is Now

Keynote | Blue Team | SOC of the Future…the Future Is Now

© 2025 ycliper. Все права защищены.



  • Контакты
  • О нас
  • Политика конфиденциальности



Контакты для правообладателей: [email protected]