Главная
Study mode:
on
1
Introduction
2
Who am I
3
Background
4
Problems
5
Sources
6
Intelligence
7
Advanced Flash Detector
8
How to Implement AFED
9
Detection Flow
10
GIDHook
11
WorkCreating
12
Detection
13
Object import
14
Improved APD
15
Behaviors
16
OCX Loading
17
TC Reference
18
Demo
Description:
Explore a powerful new tool for detecting Flash Player zero-day attacks in the wild across various channels in this 17-minute Black Hat conference talk. Gain insights into the shift of attack targets from Java and IE to Flash Player in 2015. Learn effective methods for obtaining flash samples from diverse sources and identifying zero-day vulnerabilities within large datasets. Discover the implementation of an advanced Flash detector with low false-positive rates. Delve into topics such as intelligence gathering, detection flow, object import techniques, improved APD behaviors, and OCX loading. Witness a live demonstration showcasing the tool's capabilities in identifying and analyzing potential Flash Player exploits.

New Tool for Discovering Flash Player 0-Day Attacks in the Wild from Various Channels

Black Hat
Add to list
0:00 / 0:00