Repurposing OnionDuke: A Single Case Study Around Reusing Nation State Malware

Repurposing OnionDuke: A Single Case Study Around Reusing Nation State Malware

The news media is awash with nation-states and criminals reusing malware. Why should they have all the fun? This is a case study about reversing the suspected Russian government made OnionDuke MitM patching system, discovered by the speaker in October 2014. During this talk we will seek to understand its inner workings, selecting desirable features, and repurposing it for use in other tools. This is pure malware plagiarism.

Presented by