| Date |
Type |
Title |
Author |
Event |
| April 19, 2012 |
Audio |
Adventures in analyzing Stuxnet
|
Bruce Dang
Peter Ferrie
|
Chaos Communication Congress 27th (27C3) 2010 |
| April 19, 2012 |
Video |
Adventures in analyzing Stuxnet
|
Bruce Dang
Peter Ferrie
|
Chaos Communication Congress 27th (27C3) 2010 |
| February 02, 2012 |
Slides |
Taming Worms, RATs, Dragons and More!
|
Christiaan Beek
|
Black Hat Abu Dhabi 2011 |
| November 14, 2011 |
Slides |
Neutralizing Nimda: Automated Strikeback
|
Tim Mullen
|
Black Hat Asia 2002 |
| October 18, 2011 |
Slides |
Honeypots: Tracking Hackers
|
Lance Spitzner
|
Black Hat EU 2003 |
| October 16, 2011 |
Slides |
Honeynet Technologies: Sebek
|
|
Black Hat EU 2003 |
| October 10, 2011 |
Slides |
Latest Advances in Honeynet Technologies
|
|
Black Hat USA 2003 |
| October 10, 2011 |
Slides |
Honeypots
|
Lance Spitzner
|
Black Hat USA 2003 |
| October 05, 2011 |
Slides |
Latest Advances in Honeynet Technologies
|
|
Black Hat Federal 2003 |
| October 05, 2011 |
Slides |
The Future of Honeypots
|
Lance Spitzner
|
Black Hat Federal 2003 |
| September 30, 2011 |
Slides |
Honeypots Against Worms 101
|
Laurent Oudot
|
Black Hat Asia 2003 |
| September 26, 2011 |
Slides |
dirtbox, a highly scalable x86/Windows Emulator
|
Georg Wicherski
|
Black Hat USA 2010 |
| September 20, 2011 |
Paper |
Malware Freak Show 2010: The Client-Side Boogaloo
|
Jibran Ilyas
Nicholas J. Percoco
|
Black Hat USA 2010 |
| September 20, 2011 |
Slides |
Malware Freak Show 2010: The Client-Side Boogaloo
|
Jibran Ilyas
Nicholas J. Percoco
|
Black Hat USA 2010 |
| September 16, 2011 |
Slides |
App Attack: Surviving the Mobile Application Explosion
|
Kevin Mahaffey
John Hering
|
Black Hat USA 2010 |
| September 05, 2011 |
Slides |
Goodware drugs for malware: on-the-fly malware analysis and containment
|
Christiaan Schade
Damiano Bolzoni
|
Black Hat USA 2010 |
| September 04, 2011 |
Paper |
Virt-ICE: next generation debugger for malware analysis
|
Kuniyasu Suzaki
Quynh Nguyen Anh
|
Black Hat USA 2010 |
| September 04, 2011 |
Slides |
Virt-ICE: next generation debugger for malware analysis
|
Kuniyasu Suzaki
Quynh Nguyen Anh
|
Black Hat USA 2010 |
| August 28, 2011 |
Video |
GlastopfNG - A web attack honeypot
|
Sven Vetsch
|
Hashdays 2010 |
| August 28, 2011 |
Slides |
GlastopfNG - A web attack honeypot
|
Sven Vetsch
|
Hashdays 2010 |
| August 09, 2011 |
Paper |
Exploting Similarity Between Variants to Defeat Malware
|
Andrew Walenstein
|
Black Hat DC 2007 |
| August 09, 2011 |
Slides |
Exploting Similarity Between Variants to Defeat Malware
|
Andrew Walenstein
|
Black Hat DC 2007 |
| August 01, 2011 |
Paper |
Botnet Tracking: Tools, Techniques, and Lessons Learned
|
Jose Nazario
|
Black Hat DC 2007 |
| August 01, 2011 |
Slides |
Botnet Tracking: Tools, Techniques, and Lessons Learned
|
Jose Nazario
|
Black Hat DC 2007 |
| July 29, 2011 |
Paper |
Practical Malware Analysis: Fundamental Techniques and a New Method for Malware Discovery
|
Chad McMillan
Kris Kendall
|
Black Hat DC 2007 |
| July 29, 2011 |
Slides |
Practical Malware Analysis: Fundamental Techniques and a New Method for Malware Discovery
|
Chad McMillan
Kris Kendall
|
Black Hat DC 2007 |
| June 30, 2011 |
Slides |
Observing the Tidal Waves of Malware
|
Stefano Zanero
|
Black Hat USA 2007 |
| May 11, 2011 |
Paper |
Stealth Secrets of the Malware Ninjas
|
Nick Harbour
|
Black Hat USA 2007 |
| May 11, 2011 |
Slides |
Stealth Secrets of the Malware Ninjas
|
Nick Harbour
|
Black Hat USA 2007 |
| April 29, 2011 |
Slides |
The Security Analytics Project: Alternatives in Analysis
|
|
Black Hat USA 2007 |
| April 29, 2011 |
Paper |
The Security Analytics Project: Alternatives in Analysis
|
|
Black Hat USA 2007 |
| February 22, 2011 |
Slides |
Malware Migrating to Gaming Consoles: Embedded Devices, an AntiVirus-free Safe Hideout for Malware
|
Dong-Joo Ha
Ki-Chan Ahn
|
DEFCON 18 |
| February 22, 2011 |
Video |
Malware Migrating to Gaming Consoles: Embedded Devices, an AntiVirus-free Safe Hideout for Malware
|
Dong-Joo Ha
Ki-Chan Ahn
|
DEFCON 18 |
| February 22, 2011 |
Audio |
Malware Migrating to Gaming Consoles: Embedded Devices, an AntiVirus-free Safe Hideout for Malware
|
Dong-Joo Ha
Ki-Chan Ahn
|
DEFCON 18 |
| February 19, 2011 |
Video |
0box Analyzer: AfterDark Runtime Forensics for Automated Malware Analysis and Clustering
|
Jeremy Chiu
Wayne Huang
|
DEFCON 18 |
| February 19, 2011 |
Audio |
0box Analyzer: AfterDark Runtime Forensics for Automated Malware Analysis and Clustering
|
Jeremy Chiu
Wayne Huang
|
DEFCON 18 |
| December 29, 2010 |
Slides |
Fast Automated Unpacking and Classification of Malware
|
Silvio Cesare
|
Ruxcon 2010 |
| November 16, 2010 |
Video |
Darknets
|
|
PhreakNIC 13 |
| November 07, 2010 |
Slides |
Play with Google Maps: Mapping of Malware Source
|
|
AVTokyo 2009 |
| October 20, 2010 |
Slides |
Resilient Botnet Command and Control with Tor
|
Dennis Brown
|
Hack In The Box 2010 Malaysia |
| October 19, 2010 |
Slides |
Catch that Butterfly: The Mariposa Botnet
|
Luis Corrons
Sean-Paul Correll
|
Hack In The Box 2010 Malaysia |
| October 18, 2010 |
Slides |
Analyzing Massive Web Attacks
|
Laurent Oudot
|
Hack In The Box 2010 Malaysia |
| October 02, 2010 |
Slides |
Analysis of a Next Generation Botnet
|
Dino Covotsos
|
Hack In The Box 2010 Dubai |
| October 01, 2010 |
Paper |
W32.Stuxnet Dossier
|
Eric Chien
Liam O Murchu
Nicolas Falliere
|
|
| September 27, 2010 |
Paper |
Stuxnet Under the Microscope
|
|
|
| September 21, 2010 |
Slides |
So You Want To Analyze Malware?
|
Wes Brown
|
Hack In The Box 2009 Dubai |
| September 19, 2010 |
Slides |
Building and Using an Automated Malware Analysis Pipeline
|
Wes Brown
|
Hack In The Box 2009 Malaysia |
| September 13, 2010 |
Slides |
eKimono: a Malware Scanner for Virtual Machines
|
Nguyen Anh Quynh
Kuniyasu Suzaki
Ruo Ando
|
Hack In The Box 2009 Malaysia |
| September 09, 2010 |
Slides |
How Low Will Malware Go?
|
Nishad Herath
|
Hack In The Box 2009 Malaysia |
| September 06, 2010 |
Slides |
Malware Detection Tool for Websites
|
Anant Kochar
|
Nullcon 2010 |
| August 14, 2010 |
Audio |
Snort My Memory
|
Peter Silberman
|
Black Hat DC 2009 |
| August 14, 2010 |
Video |
Snort My Memory
|
Peter Silberman
|
Black Hat DC 2009 |
| August 13, 2010 |
Audio |
Dissecting Web Attacks
|
Colin Ames
Val Smith
|
Black Hat DC 2009 |
| August 13, 2010 |
Video |
Dissecting Web Attacks
|
Colin Ames
Val Smith
|
Black Hat DC 2009 |
| August 04, 2010 |
Audio |
Xploiting Google Gadgets: Gmalware and Beyond
|
Tom Stracener
|
Black Hat USA 2008 |
| August 04, 2010 |
Video |
Xploiting Google Gadgets: Gmalware and Beyond
|
Tom Stracener
|
Black Hat USA 2008 |
| August 04, 2010 |
Audio |
Protocols and Encryption of The Storm Botnet
|
Joe Stewart
|
Black Hat USA 2008 |
| August 04, 2010 |
Slides |
Protocols and Encryption of The Storm Botnet
|
Joe Stewart
|
Black Hat USA 2008 |
| August 04, 2010 |
Video |
Protocols and Encryption of The Storm Botnet
|
Joe Stewart
|
Black Hat USA 2008 |
| July 29, 2010 |
Video |
Alternative Medicine: The Malware Analyst's Blue Pill
|
Paul Royal
|
Black Hat USA 2008 |
| July 29, 2010 |
Slides |
Alternative Medicine: The Malware Analyst's Blue Pill
|
Paul Royal
|
Black Hat USA 2008 |
| July 29, 2010 |
Paper |
Alternative Medicine: The Malware Analyst's Blue Pill
|
Paul Royal
|
Black Hat USA 2008 |
| July 29, 2010 |
Audio |
Alternative Medicine: The Malware Analyst's Blue Pill
|
Paul Royal
|
Black Hat USA 2008 |
| July 27, 2010 |
Video |
Malware Detection Through Network Flow Analysis
|
Bruce Potter
|
Black Hat USA 2008 |
| July 26, 2010 |
Slides |
Malware Detection Through Network Flow Analysis
|
Bruce Potter
|
Black Hat USA 2008 |
| July 26, 2010 |
Audio |
Malware Detection Through Network Flow Analysis
|
Bruce Potter
|
Black Hat USA 2008 |
| July 14, 2010 |
Audio |
Jinx - Malware 2.0
|
Itzik Kotler
Jonathan Rom
|
Black Hat USA 2008 |
| July 14, 2010 |
Slides |
Jinx - Malware 2.0
|
Itzik Kotler
Jonathan Rom
|
Black Hat USA 2008 |
| July 14, 2010 |
Video |
Jinx - Malware 2.0
|
Itzik Kotler
Jonathan Rom
|
Black Hat USA 2008 |
| July 07, 2010 |
Audio |
Metamorphic / Polymorphic Malware DNA
|
Chet Hosmer
|
Black Hat USA 2008 |
| July 07, 2010 |
Slides |
Metamorphic / Polymorphic Malware DNA
|
Chet Hosmer
|
Black Hat USA 2008 |
| July 07, 2010 |
Video |
Metamorphic / Polymorphic Malware DNA
|
Chet Hosmer
|
Black Hat USA 2008 |
| July 02, 2010 |
Video |
Methods for Understanding Targeted Attacks with Office Documents
|
Bruce Dang
|
Black Hat USA 2008 |
| July 02, 2010 |
Audio |
Methods for Understanding Targeted Attacks with Office Documents
|
Bruce Dang
|
Black Hat USA 2008 |
| June 30, 2010 |
Slides |
SQL Injection Worms for Fun and Profit
|
Justin Clarke
|
Black Hat USA 2008 |
| June 30, 2010 |
Audio |
SQL Injection Worms for Fun and Profit
|
Justin Clarke
|
Black Hat USA 2008 |
| June 30, 2010 |
Video |
SQL Injection Worms for Fun and Profit
|
Justin Clarke
|
Black Hat USA 2008 |
| June 29, 2010 |
Audio |
Insane Detection of Insane Rootkits: Chipset Based Approach to Detect Virtualization Malware
|
Yuriy Bulygin
|
Black Hat USA 2008 |
| June 29, 2010 |
Video |
Insane Detection of Insane Rootkits: Chipset Based Approach to Detect Virtualization Malware
|
Yuriy Bulygin
|
Black Hat USA 2008 |
| June 22, 2010 |
Slides |
Protocol, Mechanism and Encryption of Pushdo/Cutwail/Webwail Botnet
|
Kyle Yang
|
Black Hat EU 2010 |
| June 21, 2010 |
Paper |
State Of Malware: Family Ties
|
Peter Silberman
Ero Carrera
|
Black Hat EU 2010 |
| June 21, 2010 |
Slides |
State Of Malware: Family Ties
|
Peter Silberman
Ero Carrera
|
Black Hat EU 2010 |
| June 17, 2010 |
Slides |
Targeted attacks: from being a victim to counter attacking
|
Andrzej Dereszowski
|
Black Hat EU 2010 |
| June 17, 2010 |
Slides |
Fireshark - A tool to Link the Malicious Web
|
Stephan Chenette
|
Black Hat EU 2010 |
| May 25, 2010 |
Paper |
The WOMBAT API: querying a global network of advanced honeypots
|
Stefano Zanero
Paolo Milani Comparetti
|
Black Hat DC 2010 |
| May 21, 2010 |
Slides |
Malware Analysis for the Enterprise
|
Jason Ross
|
Black Hat DC 2010 |
| May 21, 2010 |
Paper |
Malware Analysis for the Enterprise
|
Jason Ross
|
Black Hat DC 2010 |
| May 16, 2010 |
Paper |
Whose Internet is it, anyway?
|
Andrew Fried
|
Black Hat DC 2010 |
| May 16, 2010 |
Slides |
Whose Internet is it, anyway?
|
Andrew Fried
|
Black Hat DC 2010 |
| April 22, 2010 |
Audio |
Automated Malware Similarity Analysis
|
Daniel Raygoza
|
DEFCON 17 |
| April 22, 2010 |
Paper |
Automated Malware Similarity Analysis
|
Daniel Raygoza
|
DEFCON 17 |
| April 22, 2010 |
Slides |
Automated Malware Similarity Analysis
|
Daniel Raygoza
|
DEFCON 17 |
| April 22, 2010 |
Video |
Automated Malware Similarity Analysis
|
Daniel Raygoza
|
DEFCON 17 |
| April 22, 2010 |
Slides |
Reverse Engineering By Crayon: Game Changing Hypervisor Based Malware Analysis and Visualization
|
Danny Quist
Lorie Liebrock
|
DEFCON 17 |
| April 22, 2010 |
Audio |
Reverse Engineering By Crayon: Game Changing Hypervisor Based Malware Analysis and Visualization
|
Danny Quist
Lorie Liebrock
|
DEFCON 17 |
| April 22, 2010 |
Video |
Reverse Engineering By Crayon: Game Changing Hypervisor Based Malware Analysis and Visualization
|
Danny Quist
Lorie Liebrock
|
DEFCON 17 |
| April 19, 2010 |
Audio |
Malware Freak Show
|
Nicholas J. Percoco
Jibran Ilyas
|
DEFCON 17 |
| April 19, 2010 |
Slides |
Malware Freak Show
|
Nicholas J. Percoco
Jibran Ilyas
|
DEFCON 17 |
| April 19, 2010 |
Video |
Malware Freak Show
|
Nicholas J. Percoco
Jibran Ilyas
|
DEFCON 17 |
| April 04, 2010 |
Video |
Making Fun of Your Malware
|
Michael Ligh
Matthew Richard
|
DEFCON 17 |
| April 04, 2010 |
Slides |
Making Fun of Your Malware
|
Michael Ligh
Matthew Richard
|
DEFCON 17 |
| April 03, 2010 |
Audio |
Making Fun of Your Malware
|
Michael Ligh
Matthew Richard
|
DEFCON 17 |
| February 23, 2010 |
Video |
Down the Rabbit Hole: Uncovering a Criminal Server
|
Iftach Ian Amit
|
DEFCON 17 |
| February 23, 2010 |
Audio |
Down the Rabbit Hole: Uncovering a Criminal Server
|
Iftach Ian Amit
|
DEFCON 17 |
| February 23, 2010 |
Slides |
Down the Rabbit Hole: Uncovering a Criminal Server
|
Iftach Ian Amit
|
DEFCON 17 |
| February 16, 2010 |
Video |
Is Storm just a summer breeze? New concepts in malware
|
Piotr Oleszkiewicz
|
Confidence 2009 Krakow |
| February 10, 2010 |
Video |
secuBT
|
Mathias Payer
|
Chaos Communication Congress 26th (26C3) 2009 |
| February 10, 2010 |
Slides |
secuBT
|
Mathias Payer
|
Chaos Communication Congress 26th (26C3) 2009 |
| February 10, 2010 |
Paper |
secuBT
|
Mathias Payer
|
Chaos Communication Congress 26th (26C3) 2009 |
| December 21, 2009 |
Audio |
Malware Secrets
|
Val Smith
|
DEFCON 15 |
| December 14, 2009 |
Audio |
CaffeineMonkey: Automated Collection, Detection and Analysis of Malicious JavaScript
|
Ben Feinstein
Daniel Peck
|
DEFCON 15 |
| December 11, 2009 |
Audio |
Fighting Malware on your own
|
Vitaliy Kamlyuk
|
DEFCON 15 |
| November 18, 2009 |
Audio |
Malware Detection through Network Flow Analysis
|
Bruce Potter
|
DEFCON 16 |
| November 15, 2009 |
Audio |
Malware RCE: Debuggers and Decryptor Development
|
Michael Ligh
Greg Sinclair
|
DEFCON 16 |
| November 14, 2009 |
Paper |
Dispatcher: Enabling Active Botnet Infiltration using Automatic Protocol Reverse-Engineering
|
|
|
| October 06, 2009 |
Video |
Countering behavior based malware analysis
|
|
HAR 2009 |
| October 06, 2009 |
Slides |
Countering behavior based malware analysis
|
|
HAR 2009 |
| October 06, 2009 |
Paper |
Countering behavior based malware analysis
|
|
HAR 2009 |
| September 30, 2009 |
Slides |
Fast & Furious Reverse Engineering with TitanEngine
|
Mario Vuksan
Tomislav Pericin
|
Black Hat USA 2009 |
| September 30, 2009 |
Paper |
Fast & Furious Reverse Engineering with TitanEngine
|
Mario Vuksan
Tomislav Pericin
|
Black Hat USA 2009 |
| September 19, 2009 |
Paper |
Automated Malware Similarity Analysis
|
Daniel Raygoza
|
Black Hat USA 2009 |
| September 19, 2009 |
Slides |
Reverse Engineering By Crayon: Game Changing Hypervisor Based Malware Analysis and Visualization
|
Danny Quist
Lorie Liebrock
|
Black Hat USA 2009 |
| September 19, 2009 |
Paper |
Reverse Engineering By Crayon: Game Changing Hypervisor Based Malware Analysis and Visualization
|
Danny Quist
Lorie Liebrock
|
Black Hat USA 2009 |
| September 19, 2009 |
Slides |
Fight Against 1-day Exploits: Diffing Binaries vs Anti-diffing Binaries
|
Jeongwook Oh
|
Black Hat USA 2009 |
| September 19, 2009 |
Paper |
Fight Against 1-day Exploits: Diffing Binaries vs Anti-diffing Binaries
|
Jeongwook Oh
|
Black Hat USA 2009 |
| September 09, 2009 |
Slides |
The Conficker Mystery
|
Mikko Hypponen
|
Black Hat USA 2009 |
| September 09, 2009 |
Paper |
The Conficker Mystery
|
Mikko Hypponen
|
Black Hat USA 2009 |
| September 06, 2009 |
Paper |
Internet Special Ops: Stalking Badness Through Data Mining
|
Andrew Fried
Paul Vixie
Chris Lee
|
Black Hat USA 2009 |
| September 06, 2009 |
Slides |
Internet Special Ops: Stalking Badness Through Data Mining
|
Andrew Fried
Paul Vixie
Chris Lee
|
Black Hat USA 2009 |
| August 02, 2009 |
Slides |
Malware Secrets
|
Val Smith
|
DEFCON 15 |
| August 02, 2009 |
Video |
Malware Secrets
|
Val Smith
|
DEFCON 15 |
| July 26, 2009 |
Paper |
Effective Malware Analysis with Nepenthes
|
|
|
| July 26, 2009 |
Slides |
Effective Malware Analysis with Nepenthes
|
|
|
| July 08, 2009 |
Video |
CaffeineMonkey: Automated Collection, Detection and Analysis of Malicious JavaScript
|
Ben Feinstein
Daniel Peck
|
DEFCON 15 |
| July 08, 2009 |
Paper |
CaffeineMonkey: Automated Collection, Detection and Analysis of Malicious JavaScript
|
Ben Feinstein
Daniel Peck
|
DEFCON 15 |
| June 26, 2009 |
Slides |
Rootkits are awesome: Insider Threat for Fun and Profit
|
Michael Kemp
|
Confidence 2009 Krakow |
| June 23, 2009 |
Slides |
Building an Automated Malware Behavioral Analysis Environment Using Free and Open-Source Tools
|
Jim Clausing
|
|
| June 17, 2009 |
Video |
Fighting Malware on your own
|
Vitaliy Kamlyuk
|
DEFCON 15 |
| June 17, 2009 |
Slides |
Fighting Malware on your own
|
Vitaliy Kamlyuk
|
DEFCON 15 |
| May 25, 2009 |
Slides |
Jsunpack: A Solution to Decode JavaScript Exploits as they Rapidly Evolve
|
Blake Frantz
|
ShmooCon 2009 |
| May 23, 2009 |
Slides |
The Day Spam Stopped (The Srizbi Botnet Takedown)
|
Julia Wolf
|
ShmooCon 2009 |
| May 03, 2009 |
Video |
Squeezing Attack Traces
|
|
Chaos Communication Congress 25th (25C3) 2008 |
| April 27, 2009 |
Slides |
Virtual Honeypots
|
Thorsten Holz
|
Troopers 2008 |
| April 21, 2009 |
Slides |
The Deobfuscator
|
Eric D. Laspe
|
REcon 2008 |
| April 21, 2009 |
Video |
The Deobfuscator
|
Eric D. Laspe
|
REcon 2008 |
| April 20, 2009 |
Video |
Methods for analyzing malicious Office documents
|
Bruce Dang
|
REcon 2008 |
| April 20, 2009 |
Slides |
Methods for analyzing malicious Office documents
|
Bruce Dang
|
REcon 2008 |
| April 20, 2009 |
Video |
How I learned Reverse Engineering with Storm
|
Pierre-Marc Bureau
|
REcon 2008 |
| April 19, 2009 |
Slides |
How I learned Reverse Engineering with Storm
|
Pierre-Marc Bureau
|
REcon 2008 |
| April 19, 2009 |
Video |
Polymorphic Virus Analysis
|
Nicolas Brulez
|
REcon 2008 |
| April 10, 2009 |
Paper |
Let's Sink the Phishermen's Boat!
|
|
DEFCON 16 |
| April 10, 2009 |
Slides |
Let's Sink the Phishermen's Boat!
|
|
DEFCON 16 |
| April 09, 2009 |
Video |
Malware Detection through Network Flow Analysis
|
Bruce Potter
|
DEFCON 16 |
| April 09, 2009 |
Slides |
Malware Detection through Network Flow Analysis
|
Bruce Potter
|
DEFCON 16 |
| April 08, 2009 |
Video |
Malware RCE: Debuggers and Decryptor Development
|
Michael Ligh
Greg Sinclair
|
DEFCON 16 |
| April 08, 2009 |
Slides |
Malware RCE: Debuggers and Decryptor Development
|
Michael Ligh
Greg Sinclair
|
DEFCON 16 |
| March 03, 2009 |
Paper |
Dissecting Web Attacks
|
|
Black Hat DC 2009 |
| March 02, 2009 |
Slides |
Snort My Memory
|
Peter Silberman
|
Black Hat DC 2009 |
| March 02, 2009 |
Paper |
Snort My Memory
|
Peter Silberman
|
Black Hat DC 2009 |
| February 26, 2009 |
Slides |
Dissecting Web Attacks
|
|
Black Hat DC 2009 |
| January 17, 2009 |
Slides |
GPU Powered Malware
|
Daniel Reynaud
|
Ruxcon 2008 |
| August 09, 2008 |
Slides |
Malware Software Armoring Circumvention
|
|
Shmoocon 2008 |