Self-Compiling Malware | SANS@MIC Talk
While hunting, I recently found interesting malware samples that use Microsoft. NET commands to compile their second stage on-premise. This talk will review some of them and show you how they (ab)use the commands present on almost any modern Windows computer.
Speaker Bio
Xavier Mertens is a freelance cybersecurity consultant based in Belgium. His daily job focuses on the “blue team” side to protect his customer’s assets (incident handling, forensics, log management, SIEM, security visualization, OSINT), but he likes to work on the “red team” side from time to time. Xavier is also a SANS Internet Storm Center Senior Handler (https://isc.sans.edu), security blogger (https://blog.rootshell.be) and co-organizer of the BruCON security conference (http://www.brucon.org).