Back to Browse

PlugX DLL Side-Loading Technique / Felipe Duarte

4.9K views
Jul 18, 2022
14:40

PlugX is a vicious tool used by one of the most prolific threat actors APT27 / EMISSARY PANDA along-side Sysupdate, HttpBrowser and webshells including China Chopper, OwaAuth and a variant of ASPXSpy. As we track this threat actor and his TTPs it was important for us to deliver a technical session that explains how the side-loading technique works. Felipe Duarte is a Senior Threat Researcher at Security Joes and well-known reverse engineer. Aside from his work, Felipe is a Hacking Conferences speaker and conducts malware analysis and reverse engineering workshops during his time in Security Joes. For more info about Security Joes, visit our website: https://www.securityjoes.com

Download

1 formats

Video Formats

360pmp424.5 MB

Right-click 'Download' and select 'Save Link As' if the file opens in a new tab.

PlugX DLL Side-Loading Technique / Felipe Duarte | NatokHD