Ruxmon Melbourne (July)
Details
Free event! Post-talk drinks are nearby at Captain Melville (34 Franklin St).
Title: Side-Stepping Defensive Measures in a Windows 10 Enterprise Environment - XTreeGold
Description: With enterprise cautiously moving away from Windows 7 and rolling out Windows 10, Red Teamers are increasingly having to deal with new security defences introduced (and older ones now enabled by default) in the Windows 8.1 and Windows 10 OS.
XTreeGold will walk through some of these protective features and demonstrate solutions for bypassing them. Topics covered include: Getting around Driver Signing Enforcement, disabling Protected Processes, and stealing credentials with Credential Guard enabled. XTreeGold will also take a look at bypassing EDR and 'NextGen' AV.
