- Apr 13, 2013
- 3,224
You may note a couple of things:
1). The video title is rather vague as I want to decrease any ransom Google hits.
2). Adylkuzz was/is delivered by the EternalBlue/DoublePulsar combo. I did not even hint at how the malware got on our desktop. I must be magic, especially for those already employing virtualization and Outbound Firewall control. I will say that the malware for many of the initial attacks had coded into them a sleep time of like a day; this was done in the hope that some fool would take it out of virtualization and run it. In other words the efficacy of protection via virtualization was noted by the Blackhats as something to be avoided.
3). And God forbid I even mention metasploit! There has been more than enough discussion on that already.
4). At 1:43 of the video it may seem like I am trying to point out something with svchost. I wasn't- my cat jumped on my lap and the mouse moved accordingly. Sorry about that!
I guess this video may be not what one may have expected, but I hope you guys enjoy it anyway.
1). The video title is rather vague as I want to decrease any ransom Google hits.
2). Adylkuzz was/is delivered by the EternalBlue/DoublePulsar combo. I did not even hint at how the malware got on our desktop. I must be magic, especially for those already employing virtualization and Outbound Firewall control. I will say that the malware for many of the initial attacks had coded into them a sleep time of like a day; this was done in the hope that some fool would take it out of virtualization and run it. In other words the efficacy of protection via virtualization was noted by the Blackhats as something to be avoided.
3). And God forbid I even mention metasploit! There has been more than enough discussion on that already.
4). At 1:43 of the video it may seem like I am trying to point out something with svchost. I wasn't- my cat jumped on my lap and the mouse moved accordingly. Sorry about that!
I guess this video may be not what one may have expected, but I hope you guys enjoy it anyway.