Skip to content

A bunch of stuff I presented at Defcamp #8

License

Notifications You must be signed in to change notification settings

operatorequals/presentation_defcamp_8

Repository files navigation

Unexpected Shells with covertutils

Presentation Video (YouTube)

Slides (GitHub)

Conference Publication Page (def.camp)

TL;D[R/W] (Too Long ;Didn't [Read/Watched])

The whole thing starts with the classic argument about how this thing is different from other similar ones and why we need another of those. Turns out that many things are missing from classic Remote Administration Tools, mostly connectivity wise.

A Design class about how a backdoor (RAT Agent/Handler pair) is structured follows. Parts, components and their jobs are explained and demonstrated.

Presentation of covertutils, a Python package for Developing Backdoors. Contains demonstration of package features, points about the inner mechanics of the package, design decisions and a coding example (available @ ReadTheDocs).

A brief ancore with an ICMP real world case (available @ ReadTheDocs) and the traffic analysis of it. A backdoor totally resembling a Ping network traffic between hosts.

Project References:

Project Repo (GitHub)

Documentation Page (ReadTheDocs)

Blog Post (Securosophy)

Package in PyPI

Releases

No releases published

Packages