11

9th Quarterly Meetup – 19th November 2016

In this meet, Abhijit Mohanta  delivered presentation on “Malware Detection using Machine Learning “,Ajay Kumar  presented on “Deep Web – what to do and what not to do ”, Adithya Naresh presented on “Introduction to ICS/SCADA security ”,Amit Malik  presented on “POS Malware: Is your Debit/Credit Transcations Secure? ”,Rakesh Paruchuri  presented on “Format String Vulnerability ”, Jayakrishna Menon  presented on […]

23

Psinfo

Psinfo is a Volatility plugin which collects the process related information from the VAD (Virtual Address Descriptor) and PEB (Process Enivornment Block) and displays the collected information and suspicious memory regions for all the processes running on the system. This plugin should allow a security analyst to get the process related information and spot any […]

25

HollowFind

  Hollowfind is a Volatility plugin to detect different types of process hollowing techniques used in the wild to bypass, confuse, deflect and divert the forensic analysis techniques. The plugin detects such attacks by finding discrepancy in the VAD and PEB, it also disassembles the address of entry point to detect any redirection attempts and […]