Subject: Rootkits
Who: Polynomial
When: December 17th 2010
Time: 15:00 GMT - 9:00AM EST
Where: IRC
Server: irc.evilzone.org (6697 for SSL)
Channel: #xrlecture
More info:
I'll be covering the basics model of Windows' privilege ring system, memory protection, stealth methodology, IAT hooks in user mode and DKOM / SSDT hooks in kernel mode. Some programming knowledge will be necessary to follow a lot of it. If you know C, you'll be fine. If you know another C-style language (C++, C#, Java, PHP, etc) you should be ok. If you can code but don't know any C-style languages, go learn one! It's going to be a very interesting talk and it encompasses everything from systems security to undocumented Windows internals.