Главная
Study mode:
on
1
Intro
2
Current state
3
How did we get here?
4
Gut check - How do you feel?
5
How do you know it's working?
6
Common Approach - Pen Tests
7
Solution? Build your own Red Team?
8
ATT&CK!
9
T1155 - AppleScript
10
Detection Lifecycle using Atomic
11
T1141 - Input Prompt (AppleScript)
12
Level Up: Chain Reactions
13
Generating a Chain Reaction
14
Chain Reaction: Ranger
15
Chain Reaction: Dragon's Tail
16
A note on simulating APT
Description:
Explore the effectiveness of endpoint security solutions using Atomic Red Team in this BSidesCharm 2018 conference talk. Delve into the current state of endpoint security, its evolution, and common testing approaches like penetration testing. Learn how to build your own Red Team and leverage the MITRE ATT&CK framework. Examine specific techniques such as AppleScript exploitation and input prompt manipulation. Discover the power of chaining attacks through examples like Ranger and Dragon's Tail. Gain insights on simulating Advanced Persistent Threats (APTs) to enhance your organization's security posture.

Using Atomic Red Team to Test Endpoint Solutions

Add to list