Главная
Study mode:
on
1
Intro
2
Obstacles to the researcher
3
Preparation: Wordpress compromised
4
Search engine de-optimization
5
Behind the scenes: Malicious SEO
6
Search landing page-the swap
7
Payload filename matches search terms
8
Profile the target machine
9
Second stage Javascript installer
10
Process hollowing
11
Server Infrastructure
12
What's a web user supposed to do?
13
Gootloader really is Google's problem
Description:
Explore the intricacies of search engine deoptimization techniques employed by Gootloader in this 54-minute conference talk from BSidesLV 2021. Delve into the obstacles researchers face, the preparation involving compromised Wordpress sites, and the malicious SEO tactics behind the scenes. Examine the search landing page swap, payload filename matching, target machine profiling, and the second stage Javascript installer. Investigate process hollowing, server infrastructure, and the implications for web users. Conclude by understanding why Gootloader's activities are ultimately Google's responsibility to address.

Search Engine Deoptimization with Gootloader

BSidesLV
Add to list
0:00 / 0:00