Windows Kernel Patch Protection - Achilles Heel: PatchGuard


Posted on in Presentations

This session will look at a critical flaw in the design of Windows Kernel Patch Protection (PatchGuard), a system used to prevent modification to kernel code and other critical structure. The design of PatchGuard will be discussed, along with the design of an attack which uses the flaw in PatchGuard to disable the PatchGuard response entirely. In the end, a set of mitigations will be proposed.

Access This and Other RSAC Conference Presentations with Your Free RSAC Membership

Your RSAC Membership also includes AI-powered summaries, mind maps, and slides for Conference presentations, Group Discussions with experts, and more.

Watch Now >>
Participants
Arush Agarampur

Speaker

Student, Rutgers-New Brunswick


Share With Your Community