The Hidden Risk in Undocumented API Behavior


Posted on in Presentations

Documentation completeness, or rather the lack of it, can be detrimental. This session will delve into one example illustrating how more than 15 AV and EDR vendors have overlooked undocumented risk in a group of Win32 API functions, exposing them to an attack in which malicious actors could disable their protection or gain additional privileges on the system. The talk will also discuss lessons learned.

Access This and Other RSAC Conference Presentations with Your Free RSAC Membership

Your RSAC Membership also includes AI-powered summaries, mind maps, and slides for Conference presentations, Group Discussions with experts, and more.

Watch Now >>
Participants
Bahaa Naamneh

Speaker

Technical Fellow, Crosspoint Labs


Share With Your Community