The Hidden Risk in Undocumented API Behavior - Bahaa Naamneh - NDC Security 2024
NDC Conferences NDC Conferences
190K subscribers
531 views
0

 Published On Mar 28, 2024

This talk was recorded at NDC Security in Oslo, Norway. #ndcsecurity #ndcconferences #security #developer #softwaredeveloper

Attend the next NDC conference near you:
https://ndcconferences.com
https://ndc-security.com/

Subscribe to our YouTube channel and learn every day:
/@NDC

Follow our Social Media!

  / ndcconferences  
  / ndc_conferences  
  / ndc_conferences  


Documentation completeness, or rather the lack of it, can be detrimental. This session will delve into one example illustrating how more than 15 AV and EDR vendors have overlooked undocumented risk in a group of Win32 API functions, exposing them to an attack in which malicious actors could disable their protection or gain additional privileges on the system. The talk will also discuss lessons learned.

show more

Share/Embed