22/04/2022
Serdecznie zapraszamy do udziału w bezpłatnym webinarze Jana Koprivy - międzynarodowego eksperta ds. cyberbezpieczeństwa, który poświęcony zostanie praktycznej analizie ataków opartych na złośliwych skryptach w dokumentach najpopularniejszych formatów (m.in. RTF, DOC/DOCX, XLS/XLSX, PDF). 🤩💻😎
Wydarzenie odbędzie się w sobotę, 23 kwietnia o godz. 16:00. Będzie prowadzone w języku angielskim.
Link do wydarzenia https://www.youtube.com/watch?v=SUCe_s0Ir3E
Krótki opis oraz program webinaru:
One of the dominant vectors for spreading of targeted as well as generic malicious code is undoubtedly e-mail. Whether it is for sending out malicious attachments or links to externally hosted files, malefactors find e-mail to be a very effective distribution mechanism. Among the most common files that are spread this way are different types of scripts and malicious documents or "maldocs". The ability to triage and analyze these types of files on at least a basic level is indispensable to any security analyst or incident responder. However, the skills and knowledge enabling one to conduct such an analysis can be quite useful to any other IT professional as well.
In the upcoming, approximately 3 hours long webinar, we will take a look at the structure and properties of different document formats and scripts, which attackers use most often, discuss tools necessary for analysis of such file formats, and - mainly - engage in practical analysis of a number of real-world malicious samples.
Outline:
Use of maldocs and scripts in attacks in the wild
Standard classification of malicious code
Most common formats of scripts and malicious documents used by malefactors and how to analyze them
BAT, JS, VBS and PowerShell scripts
RTF documents and commonly exploited vulnerabilities
Historical (CFBF) Office documents (DOC, XLS etc.) - VBA and XLM macros and other ways of weaponizing them
Modern (OOXML) Office documents (DOCX, XLSX etc.) - VBA macros, vulnerabilities, and other ways of weaponizing them
PDF documents and embedded scripts and files
LNK files (not just) as simple downloaders
Serdecznie zapraszamy!
Zespół MrCertified 🥳