Gal Diskin (Senior Security Researcher, Intel Corporation)
HITB LAB TITLE: Hacking using Dynamic Binary Instrumentation
HITB LAB ABSTRACT:
Binary instrumentation, in particular DBI (Dynamic Binary Instrumentation) is a valuable tool for anyone that deals in information security. Whether you are searching for vulnerabilities, developing exploits, reverse engineering, visualizing programs or defending yourself from attacks – DBI is the tool you need. DBI allows you to manipulate programs at the binary level making it the modern “Swiss army knife” for security experts. This workshop will explain the basics of DBI, referencing the Pin DBI engine. Example code will be provided under the Intel open source license. Examples include code that develops exploits automatically (with no human intervention), code that detects vulnerabilities as they occur, accelerated fuzzing techniques, visualization of program code, taint analysis tools and more…
ABOUT GAL DISKIN
Gal Diskin is a senior security researcher working for Intel. He was formerly a private security consultant. Gal has studied math and comp sci in Israel Institute of Technology. Gal’s current areas of research include DBI and application security, HW and FW based attacks, security of script interpreters and new exploitation techniques. Gal presented in BlackHat, Defcon and other conferences and has a blog at http://www.diskin.org