收起
本期安全说是macOS攻防专场,由Synack 首席安全研究员Patrick Wardle和滴滴出行安全工程师王宇分享。
In this episode of our Information Security Talkshow, we will be talking about attacking and defending the macOS. It will be co-hosted by our special guest, Patrick Wardle, Chief Security Researcher at Synack as well as by Wang Yu, a security engineer at DiDi Chuxing.
安全说介绍(The Information Security Talkshow)
滴滴信息安全部DSRC推出【安全说】(Information Security Talkshow)系列活动,与国内外顶级安全专家或白帽黑客分享交流。
The Information Security Talkshow is a series organized by DiDi’s Information Security Department. In this series, top security experts from all over the world are invited to discuss and share more on their researches or areas of expertise.
本期介绍(The Event)
本期主题:
macOS攻防专场
Topic:
Attack and defense of macOS
活动时间:
2017年6月14日13:30签到
Time:
Attendees to sign-in at 13:30 on June 14th, 2017
活动地点:
北京市海淀区东北旺西路8号院尚东数字山谷B区1号楼 · 一层C980
Venue:
Room C980, Floor 1, Building 1, Area B ,Shangdong Digital Valley, No.8 Dongbeiwang West Road , Haidian District, Beijing
议程安排:
Agenda:
嘉宾介绍( Our Speakers)
Patrick Wardle
Patrick Wardle ,Synack 首席安全研究员。Patrick Wardle曾就职于美国航空航天局,并在许多顶级安全会议上做过演讲。在空闲时间里,他收集了许多OS X的恶意软件,并写了许多OS X安全工具。
Chief Security Researcher at Synack. Having worked at NASA , and has presented at many security conferences, he is intimately familiar with aliens, spies, and talking nerdy. In his free time, he collects OS X malware and writes free OS X security tools.
分享议题:
聊聊2016年的macOS恶意软件
Presentation title:
Meet and greet the macOS malware class of 2016
分享框架:
2016年是Mac恶意软件作者忙碌的一年,发布了如KeRanger、Eleanor、Keydnap等各种新的macOS恶意软件。该演讲将讨论其感染载体,持久性机制和功能。除此之外,演讲还将讨论各种通用检测方法来确保我们的Mac安全。
Description:
Say hello to KeRanger, Eleanor, Keydnap, and more! 2016 was a busy year for Mac malware authors who released a variety of new macOS malware creations. The talk will provide a technical overview of this malware, by discussing their infection vectors, persistence mechanisms, and features. We will discuss various generic detections that strive to ensure our Mac remain secure.
王宇(Wang Yu)
王宇,滴滴出行安全工程师。王宇热爱与操作系统内核有关的一切事物,从内核架构实现、驱动程序编写、Rootkit/Anti-Rootkit到漏洞挖掘与利用、Android Root等。他曾在SysCan360 2012/2013、Hitcon 2013、Black Hat USA 2014等会议发表过演讲,并出任GeekPwn活动评委。
DiDi Chuxing security engineer. Wang Yu loves everything regarding OS kernels, from the implementation of various kernel architectures, driver programming, rootkit/anti-rootkit to hunting and exploiting of vulnerabilities and the rooting of Android. He presented at conferences such as SysCan360 2012/2013, Hitcon 2013, Black Hat USA 2014, and served as a GeekPwn event judge.
分享议题:
macOS 内核 Rootkit 攻防
Presentation title:
Attack and defense of macOS kernel rootkit
分享框架:
macOS Rootkit 常见形态
macOS Anti-Rootkit 技术手段
macOS 驱动程序开发
macOS 系统内核调试
Presentation overview:
MacOS rootkit common form
MacOS Anti-Rootkit technology
MacOS driver Programming
MacOS system kernel debugging
滴滴安全应急响应中心
1、本活动具体服务及内容由主办方【大米米】提供,活动行仅提供票务技术支持,请仔细阅读活动内容后参与。
2、如在活动参与过程中遇到问题或纠纷,双方应友好协商沟通,也可联络活动行进行协助。