Главная
Study mode:
on
1
Intro
2
EMOTIONAL UPS AND DOWNS OF DOING RESEARCH
3
BRUTE FORCING MALWARE OVERVIEW
4
2014 Mayhem
5
2015 CMS Catcher
6
MODULAR BOTNET
7
URL PATTERN OF THE INFECTED TORRENTS
8
SEARCH ENGINES QUERY
9
WORDPRESS FRAMEWORK CHECK
10
ATTACK WITH XML-RPC
11
TRIES TO BRUTE FORCE
12
FROM V.1 TO V.3
13
CONNECTION SEQUENCE
14
DOMAINS
15
WHAT DID WE LEARN?
Description:
Explore an in-depth analysis of CMS brute-forcing malware and botnets in this 39-minute conference talk from BruCON Security Conference. Gain insights into the landscape of Content Management System (CMS) attacks, focusing on WordPress vulnerabilities and weak password exploitation. Compare prominent brute-forcing botnets, examining their technical capabilities and attack strategies. Delve into a real-life case study of the Sathurbot trojan, analyzing its modules, infrastructure, target selection, and attack patterns. Learn about detection methods for identifying CMS brute-forcing attacks and understand the evolving threats facing website security. Discover the emotional ups and downs of cybersecurity research while exploring the technical intricacies of modular botnets, search engine manipulation, and WordPress framework vulnerabilities.

An Overview of the CMS Brute-Forcing Malware Landscape

BruCON Security Conference
Add to list