Talk With an Expert

Processes and Modules

  • Thu, Oct 10, 2024
  • 11:00AM - 1:00PM AEDT
  • English
  • Jonathan Reiter
  • Technical Presentation
Webcast Hero

Directory enumeration is just one of many features implants should have. The first workshop covered how to do that, and this workshop will cover how to enumerate processes and modules that could be loaded in them.

** Please Note: This session is a two-hour workshop and participation in the event requires certain host system prerequisites.

Host system requirements:

  • Intel or AMD64 CPU i5 or better
  • 16GB of RAM or better (32GB preferred)
  • 100GB of free HD space or more
  • Windows 10 Host or a Windows 10 VM
  • Visual Studio 2022 Community
  • or Visual Studio 2019 Community
  • Must have the C/C++ package installed
  • This will bring in the SDK and give you the ability to create desktop/console programs

To access the first workshop click here.

Meet the speaker

Jonathan Reiter
Jonathan Reiter

Jonathan Reiter

Jonathan is an officer in the Maryland Air National Guard serving as a cyberspace capabilities developer. With expertise in Windows implant development and kernel research, he brings practical defensive and offensive cybersecurity experience to SANS.

Read more about Jonathan Reiter