6. [bonus] dcm mi6

8
Bonus slides Jun 07, 2014

Upload: defconmoscow

Post on 31-Jul-2015

97 views

Category:

Internet


0 download

TRANSCRIPT

Page 1: 6. [Bonus] DCM MI6

Bonus slides

Jun 07, 2014

Page 2: 6. [Bonus] DCM MI6

Some practical malware analysis…

Jun 07, 2014

Page 3: 6. [Bonus] DCM MI6

Malware, short for malicious software, is any software used to disrupt computer operation, gather sensitive information, or gain access to private computer systems. It can appear in the form of code, scripts, active content, and other software. 'Malware' is a general term used to refer to a variety of forms of hostile or intrusive software

Malware

Jun 07, 2014

Page 4: 6. [Bonus] DCM MI6

Analysis is the process of breaking a complex topic or substance into smaller parts to gain a better understanding of it. The technique has been applied in the study of mathematics and logic since before Aristotle (384–322 B.C.), though analysis as a formal concept is a relatively recent development…

Analysis

Jun 07, 2014

Page 5: 6. [Bonus] DCM MI6

Congratulations, now you’re ready for the secret task!

Jun 07, 2014

Page 6: 6. [Bonus] DCM MI6

http://defcon-moscow.org/secret/mi6/task.txt

*** TRIVIA *** A week ago we received a new malware sample which by some reasons looked quite familiar... Whereas some of its functionality revealed in the memory dump, the most interesting part was still encrypted...

*** TASK *** 1) Decrypt the strings which are hidden in malware 2) Find 224-bit magic string in it 3) Send it to defconmoscow along with description of its

purpose and your decoder4) Become the proud speaker of 0x111 meeting of Defcon

Moscow!

Jun 07, 2014

Page 7: 6. [Bonus] DCM MI6

For those who don’t feel self-confident yet or would like to

learn more about malware analysis, welcome to our

workshop!

Follow up @defconmoscow!

Jun 07, 2014

Page 8: 6. [Bonus] DCM MI6

Y.O.B.A. hacking