Главная
Study mode:
on
1
Introduction
2
Quick Facts
3
Technical Details
4
Macros
5
Statistics
6
VB Macros
7
Main payload
8
Registration script
9
WinRAR job
10
Systemfilelist job
11
Report job
12
Collect credentials
13
Login credentials
14
Key logger
15
Path download
16
Analysis
17
Core Job
18
SDelete
19
KillSwitch
20
Summary
Description:
Explore a comprehensive analysis of Netrepser, a JavaScript-based targeted attack framework, in this 25-minute conference talk from BSidesSF 2018. Delve into the unique approach of this espionage tool, which combines freeware utilities to create a complex malware framework. Examine its technical details, including macros, VB scripts, main payload, and various jobs such as registration, WinRAR, system file listing, and credential collection. Investigate the attack's communication techniques, impact on victim data, and how it differs from military-grade APTs. Gain insights into the core job, SDelete function, and kill switch mechanisms. Understand how Netrepser's simplicity allows it to blend into target environments while still carrying out sophisticated espionage operations against high-profile institutions.

Netrepser - A JavaScript Targeted Attack

Security BSides San Francisco
Add to list
0:00 / 0:00