Sunday, April 29, 2012

CPE: McAfee AudioParasitic: Episode 33 part 1/2Race to Zero going to be held in Def Con


length: 00:15:42

no matter what the bad guy will create undetectable malware
so we should at least benefit on this : “give us the sample!!!”
unfortunately here the rule is : do not share the sample – this is flawed

if sample is not shared- benefit only the bad guys
the good guys also need to receive the sample to analyze

people tend to forget that AV is reactive
it’s nothing that we don’t know

there is no good reason no to share the sample to AV community

at the end of the day, we’re suppose to be the good guy :
AV is dead is blab la bla is not helping anybody

VirusTotal – the AV engine is not optimized configured
Just CLI function
For example: script scan is to access from CLI
Useful to test sample BUT not useful for benchmarking.

Labels: ,

0 Comments:

Post a Comment

Subscribe to Post Comments [Atom]

<< Home