.NET Manifesto - Win Friends and Influence the Loader

DerbyCon 9.0 - Finish Line

Presented by: Casey Smith (@infosecsmith2)
Date: Saturday September 07, 2019
Time: 17:30 - 18:00
Location: Stable Talks

Everything you never wanted to know about .NET manifests and influencing binary loading . A growing number of security tools, both offensive and defensive rely on the .NET Framework. This talk will focus on a narrow but important aspect. We will cover Application and Machine configuration files, as well as Registration-Free and Side-By-Side Assembly loading. What do all these have in common?Manifests. XML manifest can influence how the Operating System locates and executes binaries. We will explore additional concepts around influencing assembly loads. This talk will provide excellent insight into how these mechanisms work. How they can be subverted, and how they can be instrumented to aid defenders.

Casey Smith

Casey has a passion for understanding and testing the limits of and assertions of defensive systems.


KhanFu - Mobile schedules for INFOSEC conferences.
Mobile interface | Alternate Formats