Emulating IoT Malware and Firmware with Docker+QEMU - Ilya @drablyechos

Описание к видео Emulating IoT Malware and Firmware with Docker+QEMU - Ilya @drablyechos

In this talk, we will explore new techniques for emulating IoT firmware and malware in Docker by using a QEMU user-mode shim to achieve transparent execution of ARM and MIPS binaries on an x86 host. To demonstrate how these techniques are useful for both vulnerability research and malware analysis, we will look at the firmware of some commonly available routers and infect them with a customized Mirai variant, which can then be controlled from a C2 container. Considerable focus will be given on how these images were built.

Bio:
Ilya is just another security enthusiast! Started doing this work with some friends @thugcrowd to organize an IoT CTF event.

Комментарии

Информация по комментариям в разработке