Skip to content
This repository has been archived by the owner on Nov 17, 2020. It is now read-only.

Commit

Permalink
slide
Browse files Browse the repository at this point in the history
  • Loading branch information
utkusen committed Aug 12, 2018
1 parent 4813de3 commit bc4f142
Show file tree
Hide file tree
Showing 2 changed files with 4 additions and 0 deletions.
4 changes: 4 additions & 0 deletions README.md
Original file line number Diff line number Diff line change
Expand Up @@ -14,6 +14,10 @@
```

<p align="center">
<a href="https://www.defcon.org/html/defcon-26/dc-26-demolabs.html"><img src="https://img.shields.io/badge/DEF%20CON%2026-Demo%20Labs-red.svg"></a>
</p>

## Abstract

firstorder is designed to evade Empire's C2-Agent communication from anomaly-based intrusion detection systems. It takes a traffic capture file (pcap) of the network and tries to identify normal traffic profile. According to results, it creates an Empire HTTP listener with appropriate options.
Expand Down
Binary file added firstorder_slide.pdf
Binary file not shown.

0 comments on commit bc4f142

Please sign in to comment.