DEF CON 24

Sunday, August 7, 2016 4 months ago Las Vegas, USA

We're pleased to announce that James Loureiro and Georgi Geshev will be presenting on kernel fuzzing at DEF CON 24 in Las Vegas.

Event Description

DEF CON has been a part of the hacker community for over two decades. Originally started in 1993, it was a meant to be a party for members of "Platinum Net", a Fido protocol based hacking network out of Canada. DEF CON has now become one of the oldest continuously running hacker conventions around, and also one of the largest.

Talk presented by MWR

  • Time: 15:00:00
  • Room: Track Three
  • Topic: Platform Agnostic Kernel Fuzzing
  • Speakers: James Loureiro and Georgi Geshev
  • Description: A number of toolsets have been around for a while which propose methods for identifying vulnerabilities in kernels, in particular POSIX kernels. However, none of these identified a method for generic fuzzing across Windows and POSIX kernels and have not been updated for some time.

    This presentation will outline the research which has occurred in order to find exploitable bugs across both Windows and POSIX kernels, focusing on fuzzing system calls and library calls in the Windows environment. System calls will be briefly explained, how they work and how these can be fuzzed in order to find bugs. The presentation will then move on to explaining core libraries in the Windows environment and how to fuzz these effectively.

    Other issues with creating a kernel fuzzing environment will be discussed, such as effective logging of calls in which the machine could BSOD and kernel panic, and how to correctly reproduce vulnerabilities that have been identified by the fuzzer. We will also cover efficient scaling of a kernel fuzzer so that a number of virtual machines are in operation that can generate a large number of crashes.

    Finally, a brief summary of the vulnerabilities that have been identified will be provided.

 

 

Registration

Cash only at the door, there is no pre-registration.

Get tickets

Accreditations

As members of CHECK we are measured against high standards set by CESG for the services we provide to Her Majesty's Government.
We are certified in the ISO 9001 quality management system (QMS) in the UK, ensuring reliable delivery of our products and services.
We are certified to comply with ISO 14001 in the UK, an internationally accepted standard that outlines how to put an effective environmental management system in place.
MWR is certified to comply with ISO 27001 to help ensure our client information is managed securely.
As an Approved Scanning Vendor MWR are approved by PCI SSC to conduct external vulnerability scanning services to PCI DSS Requirement 11.2.2.
We are members of the Council of Registered Ethical Security Testers (CREST), an organisation serving the needs of the information security sector.
MWR is a supplier to the Crown Commercial Service (CCS), which provides commercial and procurement services to the UK public sector.
MWR is a Qualified Security Assessor, meaning we have been qualified by PCI to validate other organisation's adherence to PCI DSS.