::Trend Micro Threat Resource Center::

Showing posts with label Conventions. Show all posts
Showing posts with label Conventions. Show all posts

08 April 2016

Blackhat Asia 2016

Glad to be back at this amazing conference. I attended the last one held in 2015, with access to all briefings and the session content are intriguing and scary at the same time.

But as they say, no defense is 100% foolproof. They WILL get in anyhow, it's how long you take to to detect and respond.

Some highlights from Arsenal:

o   CrackMapExec
§  Aims to be a one-stop-shop for pentesting Active Directory environments! Think smbexec on steroids, combining the latest and greatest techniques for AD ownage in a single tool!
§  From enumerating logged on users and spidering SMB shares to executing psexec style attacks, concurrently auto-injecting Mimikatz/Shellcode/DLL's into memory using Powershell, dumping the NTDS.dit, querying and executing commands through MSSQL DB's and more!
§  The biggest improvements over the current tools are:
·         Pure Python script, no external tools required
·         Fully concurrent threading
·         Uses ONLY native WinAPI calls for discovering sessions, users, dumping SAM hashes etc...
·         Opsec safe (no binaries are uploaded to dump clear-text credentials, inject shellcode etc...)
§  Fully open-source and hosted on Github!

o   VirusTotal
§  A free online file and URL scanner that everyone knows.
§  However there are many free features that many users don't know about such as:
·         A free public API for anyone to automate file or URL analysis.
·         IP address and domain reputation. See malware files known to be associated with a particular IP address or domain, and history Passive DNS info
·         Sysinternals, Carbon black, etc. integrations
·         Static analysis of files, structural analysis of many file types (PE, ELF, APK, ZIP, RAR, MACHO, .NET, office, etc)
·         Sandbox dynamic analysis of PE, APK, Apple Mach-O, and applications.
·         ROMS, BIOS, and firmware files
·         SSDEEP, authentihash, imphash, and other similarity indexes
·         Certificate checks on signed files
·         Whitelisting of trusted files

·         Free desktop scanning applications for Windows, MAC, and open source for compilation on linux.

Had a short chat with the developer of CrackMapExec, he mentioned that this tool runs entirely in memory and does not have any footprint. It is basically undetectable, except that the only tell-tale signs of execution would be spikes in the CPU and RAM usage.

Demonstration of CrackMapExec by @byt3bl33d3r 

30 October 2011

techfest @ Singapore Polytechnic

Name of Event: techfest @ Singapore Polytechnic
Venue: Singapore Polytechnic Convention Centre
Date: 11/9/2011
Time: 2.30pm - 6.00pm

Want to be part of the 1st ever TechFest in SP? Want to be part of an event filled with fun and
laughter? Want to find out what’s next for technology?

Come join us now at TechFest @ Singapore Polytechnic, where regional speakers will be sharing their point of views for the future. Our guest speakers include Ziriad Saibi, Director of Developer and Platform Evangelism (DPE), Microsoft Singapore, and Vincent Quah, DPE Academic and New Markets Lead, Microsoft Asia Pacific. Hear from them first-hand.

Join us now and stand a chance to win attractive prizes such as Xbox Kinect, Arc touch mouse and many more!

This event is open to all Singapore Polytechnic Students, please register at http://bit.ly/sptechfest. For any enquiries, please contact the organising team via sp@student-partners.com.sg.

29 October 2011

Over 1000 attended Microsoft TechDays Singapore 2011!

Singapore held its first Microsoft TechDays Singapore on 13 October 2011, which attracted more than 1000 delegates!

If you missed the event, do check out the highlights here:
http://spiffy.sg/developers/over-1000-attended-microsoft-techdays-singapore-2011/

20 September 2011

Microsoft TechDays Singapore 2011

The premier technical conference is coming to Singapore!

TechDays Singapore 2011 provides IT Professionals and Developers with comprehensive insights on Microsoft cloud technology and learning opportunities to manage cloud infrastructure, integrate with cloud platforms and develop modern applications.

Check out the details here:
http://www.microsoft.com/singapore/techdays/

Register by 30 September 2011 to enjoy early bird pricing at S$69! (Standard pricing at S$99 applies thereafter). Click here to register now.

26 June 2011

1st Annual DEFCON Kids Conference

Seems like USA is preparing to groom their next generation of hackers.
I wonder why we didn't have something similar in SG. :(

http://www.defconkids.org/

I hope it'll be interesting.