Explore the intricacies of Windows security research in this 49-minute conference talk from Derbycon 7. Delve into the speaker's journey of subverting trust in Windows, examining the how and why of engaging in security research. Learn about dynamic analysis, signature validation, and cryptographic guarantees for code. Discover insights on PowerShell, SIP, and Device Guard, as well as techniques for bypassing security measures. Gain valuable lessons from the speaker's experiences, including the importance of embracing distractions and shiny objects in security research. Follow the thought process behind investigating Windows registry, implementing code, and validating trust. Ideal for cybersecurity professionals and enthusiasts interested in Windows security vulnerabilities and research methodologies.
Subverting Trust in Windows - A Case Study of the How and Why of Engaging in Security Research