创意指挥与控制:它能读它能写它能C2s.pdf

编号:981769 PDF 43页 2.20MB 下载积分:VIP专享
下载报告请您先登录!

创意指挥与控制:它能读它能写它能C2s.pdf

1、It reads,it writes,it C2sCreative C2 channels.whoami Ignatius Michael Proactive security lead at DeepCovecybersecurity(by day)OWASP Toronto co-organizer Part-time lecturer at Seneca College Hobbyist LLM prompter(by night)BackgroundEasier way to mask C2 traffic during an operationTurla APTs Britney S

2、pears Instagram Comment SectionTurla hackers(RUSSIA)creatively used Instagram comments for Command and Control(C2)operationsThe malware used a Firefox extension to monitor Instagram comments for hidden C2 instructionsAPT-29(CozyBear)-RedditT1583.006:ACQUIREINFRASTRUCTURE:WEBSERVICESMITRE AT&CK:“THIS

3、 TECHNIQUE CANNOT BE EASILYMITIGATED WITH PREVENTIVE CONTROLS SINCE IT ISBASED ON BEHAVIORS PERFORMED OUTSIDE OF THESCOPE OF ENTERPRISE DEFENSES AND CONTROLS.”Refreshers C2Command and Control-Refers to a system used by attackers to remotely control compromised devices or networks.Refreshers C2Common

4、 C2 frameworks:HAVOC SLIVER EmpireCommunication usually through well-known protocols or use custom ports.Refreshers-Domain frontingA technique used to disguise the true destination of internet traffic by routing it through a front domain,typically hosted by a content delivery network(CDN),making it

5、appear as if the traffic is intended for a legitimate site while covertly connecting to a different server.Refreshers-Domain frontingStep 1:DNS Resolution1Step 2:Connection2Step 3:HTTP Request3Step 4:CDN Handling4Step 5:C2 Server Responds5ObservationsDomain trusting is not effectiveGap in currently

6、offered solutionsEasy implementationCreative Command and Control channels What is it?Leveraging legitimate services with good domain reputation to mask your C2 activities How to pick the right channels to front your activity Can it read?Can it write?Does it have pre-built API integrations or librari

友情提示

1、下载报告失败解决办法
2、PDF文件下载后,可能会被浏览器默认打开,此种情况可以点击浏览器菜单,保存网页到桌面,就可以正常下载了。
3、本站不支持迅雷下载,请使用电脑自带的IE浏览器,或者360浏览器、谷歌浏览器下载即可。
4、本站报告下载后的文档和图纸-无水印,预览文档经过压缩,下载后原文更清晰。

本文(创意指挥与控制:它能读它能写它能C2s.pdf)为本站 (竿头日上) 主动上传,三个皮匠报告文库仅提供信息存储空间,仅对用户上传内容的表现方式做保护处理,对上载内容本身不做任何修改或编辑。 若此文所含内容侵犯了您的版权或隐私,请立即通知三个皮匠报告文库(点击联系客服),我们立即给予删除!

温馨提示:如果因为网速或其他原因下载失败请重新下载,重复下载不扣分。
客服
商务合作
小程序
服务号
折叠