Danny Quist & Valsmith: Covert Debugging: Circumventing Software Armoring Techniques episode artwork

EPISODE · Jan 9, 2006 · 44 MIN

Danny Quist & Valsmith: Covert Debugging: Circumventing Software Armoring Techniques

from DEFCON 15 [Audio] Speeches from the hacker conventions · host DEF CON Announcements

Software armoring techniques have increasingly created problems for reverse engineers and software analysts. As protections such as packers, run-time obfuscators, virtual machine and debugger detectors become common newer methods must be developed to cope with them. In this talk we will present our covert debugging platform named Saffron. Saffron is based upon dynamic instrumentation techniques as well as a newly developed page fault assisted debugger. We show that the combination of these two techniques is effective in removing armoring from the most advanced software armoring systems. As a demonstration we will automatically remove packing protections from malware. Danny Quist is currently the CEO and co-founder of Offensive Computing, LLC a public malware research site as well as a consulting company. He is a PhD student at New Mexico Tech working on automated analysis methods for malware with software and hardware assisted techniques. He has written several defensive systems to mitigate virus attacks on networks and developed a generic network quarantine technology. He consults both with both private and public sectors on system and network security . His interests include malware defense, reverse engineering, exploitation methods, virtual machines, and automatic classification systems. Valsmith has been involved in the computer security community and industry for over ten years. He currently works as a professional security researcher on problems for both the government and private sectors. He specializes in penetration testing (over 40,000 machines assessed), reverse engineering and malware research. He works on the Metasploit Project development team as well as other vulnerability development efforts. Most recently Valsmith founded Offensive Computing, a public, open source malware research project.

Episode metadata supplied by the publisher feed · Published Jan 9, 2006

Embed this episode

NOW PLAYING

Danny Quist & Valsmith: Covert Debugging: Circumventing Software Armoring Techniques

0:00 44:37

No transcript for this episode yet

We transcribe on demand. Request one and we'll notify you when it's ready — usually under 10 minutes.

No similar episodes found.

No similar podcasts found.

Frequently Asked Questions

How long is this episode of DEFCON 15 [Audio] Speeches from the hacker conventions?

This episode is 44 minutes long.

When was this DEFCON 15 [Audio] Speeches from the hacker conventions episode published?

This episode was published on January 9, 2006.

Can I download this DEFCON 15 [Audio] Speeches from the hacker conventions episode?

Yes. Use the download control on the episode player to save the publisher-provided media file.
URL copied to clipboard!