Almost everything you ever wanted to know about the Blackhole Exploit Kit

Presented at ToorCon San Diego 14 (2012), Oct. 21, 2012, 4 p.m. (20 minutes)

The Black Hole exploit kit, is one of the most popular platforms for infecting users with malware. Developed in Russia, it is available for rental by anyone who wants to install their "software" on unwitting people. Technical support is even provided for the rental customers. Technologically, the exploit kit has two primary functions: 1. Statistics tracking and reporting on the browser configurations of unwitting visitors. 2. Exploiting IE, Java, Flash, or Acrobat to drop and execute an arbitrary EXE on someone's Windows system.

This exploit kit was recently in the news again, because of the release of the "totally rewritten" version 2.0 -- which is actually not really that different from version 1.2.5 released two months before.


Presenters:

  • Julia Wolf
    Julia Wolf analyzes malware, exploits, (weak) encryption, and other security stuff. Occasionally, she'll hijack a million-node botnet.

Similar Presentations: