Home
Categories
EXPLORE
True Crime
Comedy
Society & Culture
Business
Sports
Technology
Health & Fitness
About Us
Contact Us
Copyright
© 2024 PodJoint
Podjoint Logo
US
00:00 / 00:00
Sign in

or

Don't have an account?
Sign up
Forgot password
https://is1-ssl.mzstatic.com/image/thumb/Podcasts122/v4/9e/84/82/9e84827d-af3a-e5e5-4504-8177a743b418/mza_11389080000436855438.jpg/600x600bb.jpg
Hacker Talk
Firo Solutions LTD
20 episodes
1 week ago
Hacker Talk brings you interesting conversation between some of the world best hackers, cyber security professionals and information security people.
Show more...
Technology
RSS
All content for Hacker Talk is the property of Firo Solutions LTD and is served directly from their servers with no modification, redirects, or rehosting. The podcast is not affiliated with or endorsed by Podjoint in any way.
Hacker Talk brings you interesting conversation between some of the world best hackers, cyber security professionals and information security people.
Show more...
Technology
https://d3t3ozftmdmh3i.cloudfront.net/production/podcast_uploaded_nologo400/20287436/20287436-1639908886346-351a82a84c118.jpg
Ben Kurtz - Golang Malware part 2
Hacker Talk
1 hour 6 minutes 48 seconds
3 years ago
Ben Kurtz - Golang Malware part 2

Ben Kurtz - Golang Malware part 2 


Topics covered:

Golang

Hells gate, direct system calls on windows

How system calls are normally done in windows, Windows Kernel

Evading anti malware detection on Windows with Banana Phone

How to get started writing c2's in golang.  

Sliver, Opensource golang command and control. 

Red team mindset   

Evolution of programmers, bad patterns   

CVE's, common vulnerability enumeration number  

Auditing source code   

Javascript frameworks  

Cross site scripting, SQL injection and XXE(Xml External Entity) for scanning internal networks and exfiltrating data.   

Building secure code bases   

Security Engineers    

Supervisory control and data acquisition (SCADA)   

log4j  

Remote of execution and directory traversal in Java, Java's file constructor, LDAP and DirContext     

Golang for micro services   

Python 

Common bad patterns 

LDAP injection  

Modern security nightmares    

Remote debug protocols    

String concatenation   

Resistance to current modern implementation and safer framework.  

Finding bugs in games that can be used to attack power-plants.     

Dependency management     

Backdoor factory  

Bettercap  

Man in the middle  

Spoofing BGP  

BGP hijacks



Links:  

https://github.com/Binject  

https://github.com/C-Sto/BananaPhone  

https://github.com/BishopFox/sliver    

https://cve.mitre.org/

https://owasp.org/www-community/vulnerabilities/XML_External_Entity_(XXE)_Processing   

https://www.youtube.com/watch?v=FkuUpg5FO2g    

https://en.wikipedia.org/wiki/SCADA  

https://en.wikipedia.org/wiki/Log4j   

https://www.coding-bootcamps.com/blog/build-containerized-applications-with-golang-on-kubernetes.html   

https://docs.oracle.com/javase/8/docs/api/index.html?javax/naming/directory/DirContext.html   

https://apache.org/foundation/foundation-projects.html  

https://docs.oracle.com/javase/8/docs/api/index.html?javax/management/JMX.html   

https://en.wikipedia.org/wiki/Java_Debug_Wire_Protocol   

https://www.freecodecamp.org/news/big-o-notation-why-it-matters-and-why-it-doesnt-1674cfa8a23c/  

https://github.com/bettercap/bettercap   

https://www.bettercap.org/  

https://bgpmon.net/   

https://en.wikipedia.org/wiki/BGP_hijacking  

https://labs.ripe.net/author/vastur/bgplay-integrated-in-ripestat/    

https://www.symbolcrash.com/podcast/   

https://www.youtube.com/symbolcrash   

 


Hacker Talk
Hacker Talk brings you interesting conversation between some of the world best hackers, cyber security professionals and information security people.