Nytro Posted January 3, 2015 Report Posted January 3, 2015 Understanding and Defeating Windows 8.1 Kernel Patch Protection: It’s all about gong fu! (part 2)Andrea AllieviTalos Security Research and Intelligence Group - Cisco Systems Inc.aallievi@cisco.comNovember 20th, 2014 - NoSuchConWho am I• Security researcher, focused on Malware Research• Work for Cisco Systems in the TALOS Security Research andIntelligence Group• Microsoft OSs Internals enthusiast / Kernel system level developer• Previously worked for PrevX, Webroot and Saferbytes• Original designer of the first UEFI Bootkit in 2012, and otherresearch projects/analysisAgenda0. Some definitions1. Introduction to Patchguard and Driver Signing Enforcement2. Kernel Patch Protection Implementation3. Attacking Patchguard4. Demo time5. Going ahead in Patchguard ExploitationDownload: http://www.nosuchcon.org/talks/2014/D2_01_Andrea_Allievi_Win8.1_Patch_protections.pdf Quote