İSTSEC İstanbul Bilgi Güvenliği Konferansı’nda Halil Dalabasmaz “Next Generation War: EDR vs RED TEAM” başlıklı sunumu gerçekleştirmiştir. Konferansımız Nisan 2019 tarihinde İstanbul Medeniyet Üniversitesi’nde gerçekleşmiştir.
Endpoint Detection and Respons. This solutions are designed to continuously monitor and respond to threats. They do this by installing agents or sensors on the endpoints, which collect and send behavioral data to a central database for analysis. PARENT PROCESS SPOOFING BOOL CreateProcessA( LPCSTR lpApplicationName, LPSTR lpCommandLine, LPSECURITY_ATTRIBUTES lpProcessAttributes, LPSECURITY_ATTRIBUTES lpThreadAttributes, BOOL bInheritHandles, DWORD dwCreationFlags, LPVOID lpEnvironment, LPCSTR lpCurrentDirectory, LPSTARTUPINFOA lpStartupInfo, LPPROCESS_INFORMATION lpProcessInformation.