announcements: September 2008 Archives


This month, we have Dennis Brown presenting an expanded version of the Asprox talk he'll be giving at ToorCon. They only gave him 20 minutes. We're giving him a whole hour.

The year 2008 has seen the rapid and pervasive rise of large-scale SQL Injection attacks as a mechanism for distributing malware. One of the most successful and interesting parties using this technique are the people behind the Asprox (aka Danmec) botnet. This presentation will discuss the reasons why the Asprox botnet is so successful and will lay bare the botnet in its entirety, explaining its structure, command and control architecture, describing executed attacks and diving into other aspects and details of this threat. Techniques to profile and detect infections and activity will be discussed, and code to detect & track the threat will be distributed.

Note! We're on a special night this month. AS220 has their Action Speaks! Series on the first, third and fourth Wednesdays, so we took the second Wednesday

Date/Time: 8 Oct 2008 - 1730-1900
Location: AS220, 115 Empire St, Providence. Directions