{"type":"rich","version":"1.0","provider_name":"Transistor","provider_url":"https://transistor.fm","author_name":"Talkin' Bout [Infosec] News","title":"Webcast: Move Aside Script Kiddies - Malware Execution in the Age of Advanced Defenses","html":"<iframe width=\"100%\" height=\"180\" frameborder=\"no\" scrolling=\"no\" seamless src=\"https://share.transistor.fm/e/f6cfea35\"></iframe>","width":"100%","height":180,"duration":3911,"description":"A few short years ago, penetration testers did not have to work too hard for their malware command channels to execute. Fast forward to today in the age of Endpoint Detection and Response, User Behavior Analytics, and advanced built-in O/S defenses, your standard toolkit for malware generation/execution does not work anymore. \n\n\n\nAll is not lost! \n\n\n\nUsing some relatively simple programming techniques, and tactical changes, we can still gain malware execution to establish our C2 channels. With some additional tactical changes post-exploitation, we can still move around below the radar but we need to move with greater care and stealth than ever before.\n\n\n\nJoin the BHIS Discord Community– https://discord.gg/aHHh3u5\n\n\n\n00:00 – The Soundboard Has Too Many Buttons \n\n\n\n04:10 – FEATURE PRESENTATION: Malware Execution in the Age of Advanced Defenses \n\n\n\n05:36 – Attacker / Threat Actor Emulation \n\n\n\n09:41 – That Matrix \n\n\n\n10:34 – Endpoint Defense Maturity \n\n\n\n13:25 – C2 Implant Execution \n\n\n\n19:41 – Metasploit: Why Is My Network Traffic Caught? \n\n\n\n23:09 – C2 – Customize and LOL \n\n\n\n41:13 – The More You Know… \n\n\n\n44:11 – Recon/Discovery Artifacts \n\n\n\n46:15 – Amusement with AMSI \n\n\n\n47:33 – Simple! \n\n\n\n48:10 – AMSI Bypass \n\n\n\n50:27 – Event Tracing Bypass \n\n\n\n51:34 – Attack Combo! \n\n\n\n52:24 – Conclusion","thumbnail_url":"https://img.transistorcdn.com/WPYM9pq_SRUcywHv9tdgpsGLyLx04W2rDmzktvAcD4Y/rs:fill:0:0:1/w:400/h:400/q:60/mb:500000/aHR0cHM6Ly9pbWct/dXBsb2FkLXByb2R1/Y3Rpb24udHJhbnNp/c3Rvci5mbS8xZTA1/ZWZhNDcxZGM4ZTFj/ZGJhMTMwNmYzMmJj/ZjBkNi5wbmc.webp","thumbnail_width":300,"thumbnail_height":300}