EDRSilencer: How it Bypasses Defenses | Threat Detection Updates Webinar | July 2024 Edition

Описание к видео EDRSilencer: How it Bypasses Defenses | Threat Detection Updates Webinar | July 2024 Edition

Watch the July 2024 edition of our "Threat Detection Highlights" webinar series, where we dive into the latest advancements in detecting malware and phishing threats. This month, our focus is on new sandbox detections, featuring new Powershell-based techniques and updates that are crucial for staying ahead of new threats, with a demo analysis of RedLine infostealer.

Key Highlights:
- New VTIs: Discover the latest threat identifiers developed to detect evasive malware, tampering with Windows Defender, reading clipboard data via PowerShell, and using remote template injection.
- Improved Machine Learning for Better Phishing Detection: Learn about the significant enhancements to our Mantaray ML module, which have led to a 28% increase in phishing detection rates.
- Threats targeting Linux: See how our newly added YARA rules around UPX and Kiteshield packers bolster the defense against threats targeting Linux environments.
- EDRSilencer Detection: Newly introduced YARA rule helps in identifying EDRSilencer, a tool used to evade Endpoint Detection and Response (EDR) tools.

Комментарии

Информация по комментариям в разработке