YouTube Video
In parts 1, 2, and 3 of this series, you learned how to leverage WinDbg for research, including Time Travel Debugging and tracing a syscall into the kernel. In this final webcast, we will cover some of the advanced usage of WinDbg, such as the dx command, saving variables, making functions, editing memory, and using custom extensions. We will also walk through some live examples using debugging sessions in both user-mode and kernel-mode.
While not specifically required, this final webcast in the series will help prepare students for SANS’s most advanced red teaming course – SEC665: Advanced Red Team Operations – by increasing comfort with a debugger, which is an essential part of red team research.
Learn more about your presenter, Karim Lalji: https://www.sans.org/profiles/karim-lalji
This session supports concepts from SEC665: Advanced Red Team Operations and will help students prepare for the course. To learn more, browse upcoming sessions, and access your free course preview, visit https://www.sans.org/sec665
While not specifically required, this final webcast in the series will help prepare students for SANS’s most advanced red teaming course – SEC665: Advanced Red Team Operations – by increasing comfort with a debugger, which is an essential part of red team research.
Learn more about your presenter, Karim Lalji: https://www.sans.org/profiles/karim-lalji
This session supports concepts from SEC665: Advanced Red Team Operations and will help students prepare for the course. To learn more, browse upcoming sessions, and access your free course preview, visit https://www.sans.org/sec665