Training: "The Art of Mac Malware Analysis" | |
---|---|
Patrick Wardle | |
Wilcox/Pioneer Room (2nd level) | |
9:30 am - 4:00 pm | |
As macOS grows in popularity, so does the prevalence of malware targeting this platform.
In this content-packed one-day course, Mac security expert Patrick Wardle will teach the tools and techniques needed to comprehensively analyze and understand malware targeting Apple's desktop OS.
More Info: "Methods of Mac Malware Analysis" |
Registration
|
|
---|---|
09:00 am - 10:00 am |
Welcome
|
|
---|---|
10:00 am - 10:10 am |
"Endpoint Security and Insecurity" (Scott Knight)
|
|
---|---|
10:10 am - 11:00 am (50 minutes) | |
Full Abstract |
"iMessage Exploitation" (Samuel Groß)
|
|
---|---|
11:00 am - 11:50 am (50 minutes) | |
Full Abstract |
"Exploring MacOS with APOLLO" (Sarah Edwards)
|
|
---|---|
11:50 am - 12:15 pm (25 minutes) | |
Full Abstract |
Lunch
|
|
---|---|
12:15 pm - 01:45 pm |
"Walking the Bifrost: An Operator's Guide to Heimdal & Kerberos on macOS" (Cody Thomas)
|
|
---|---|
01:45 pm - 02:35 pm (50 minutes) | |
Full Abstract |
"Abusing & Securing XPC in macOS Apps" (Wojciech Reguła)
|
|
---|---|
02:35 pm - 03:00 pm (25 minutes) | |
Full Abstract |
"Aloha Arsenal" Tool Demos
|
|
---|---|
03:00 pm - 03:45 pm (45 minutes) |
"File Quarantine handling in macOS Apps" (Vladimir Metnew)
|
|
---|---|
03:45 pm - 04:35 pm (50 minutes) | |
Full Abstract |
"Mimic in Configuration" (Manabu Niseki / Suguru Ishimaru)
|
|
---|---|
04:35 pm - 05:00 pm (25 minutes) | |
Full Abstract |
"The Case of The Fly on the Wall" (Thomas Reed)
|
|
---|---|
05:00 pm - 05:25 pm (25 minutes) | |
Full Abstract |
Reception/Party
|
|
---|---|
7:30 pm - 10:00 pm |
Welcome
|
|
---|---|
10:00 am - 10:10 am |
"Finding Waldo: Leveraging the Apple Unified Log for Incident Response" (Jai Musunuri / Erik Martin)
|
|
---|---|
10:10 am - 11:00 am (50 minutes) | |
Full Abstract |
"KTRW: The journey to build a debuggable iPhone" (Brandon Azad)
|
|
---|---|
11:00 am - 11:50 am (50 minutes) | |
Full Abstract |
"Job(s) Bless Us!" (Julia Vashchenko)
|
|
---|---|
11:50 am - 12:15 pm (25 minutes) | |
Full Abstract |
Lunch
|
|
---|---|
12:15 pm - 01:45 pm |
"tvOS-Checkra1n" (Kevin Bradley)
|
|
---|---|
01:45 pm - 02:35 pm (50 minutes) | |
Full Abstract |
"Grafting Apple Trees" (Jaron Bradley)
|
|
---|---|
02:35 pm - 03:00 pm (25 minutes) | |
Full Abstract |
"Aloha Arsenal" Tool Demos
|
|
---|---|
03:00 pm - 03:45 pm (45 minutes) |
"An Attacker's Perspective on Jamf Configurations" (Luke Roberts / Calum Hall)
|
|
---|---|
03:45 pm - 04:35 pm (50 minutes) | |
Full Abstract |
"Binary Emulation Environment for Mach-O Malware" (Erika Noerenberg)
|
|
---|---|
04:35 pm - 05:00 pm (25 minutes) | |
Full Abstract |
"Documents of Doom" (Patrick Wardle)
|
|
---|---|
05:00 pm - 05:25 pm (25 minutes) | |
Full Abstract |
Finale (+ prizes!)
|
|
---|---|
05:25 pm - |