He Said, She Said – Poisoned RDP Offense and Defense

He Said, She Said – Poisoned RDP Offense and Defense

Black Hat via YouTube Direct link

Behind the Scenes

21 of 36

21 of 36

Behind the Scenes

Class Central Classrooms beta

YouTube videos curated by Class Central.

Classroom Contents

He Said, She Said – Poisoned RDP Offense and Defense

Automatically move to the next video in the Classroom when playback concludes

  1. 1 Introduction
  2. 2 Overview
  3. 3 Lazy Lateral Movement
  4. 4 RDP
  5. 5 What is Poison
  6. 6 RDP Clients
  7. 7 Open Source
  8. 8 RDP Protocol
  9. 9 Vulnerability List
  10. 10 Parsing bitmaps
  11. 11 RDP Client
  12. 12 Clipboard
  13. 13 Blacklists
  14. 14 File Copy
  15. 15 File descriptor
  16. 16 Path level cell
  17. 17 Clipboard synchronized
  18. 18 eavesdropping
  19. 19 pasted on
  20. 20 HyperV
  21. 21 Behind the Scenes
  22. 22 HyperV Test
  23. 23 WDD
  24. 24 Bug Bounty Program
  25. 25 New Detection
  26. 26 Event Tracing
  27. 27 RDP Connection Provider
  28. 28 Clipboard Provider
  29. 29 Demo
  30. 30 Detection logic
  31. 31 File creation events
  32. 32 File creation timestamps
  33. 33 Detecting malicious behaviors
  34. 34 Update
  35. 35 Lessons Learned
  36. 36 Questions

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.