Fileless Malware: How It Works

  Рет қаралды 1,220

Ken Harris

Ken Harris

Күн бұрын

This video covers what fileless malware is, how it can infect a computer, and how it's able to do this.
Timestamps:
00:00 Overview Of Fileless Malware
00:30 Infection Vectors
05:36 How It Takes Over
13:56 How It Executes
15:44 How To Protect Yourself
16:33 Hater
19:07 Q&A, Outro

Пікірлер: 26
@KenHarrisio
@KenHarrisio 7 ай бұрын
If there's anything that you want further clarification on, just let me know! Also, if you have any specific cybersecurity topics you'd like to see covered, drop a comment.
@neocephalon
@neocephalon 7 ай бұрын
It'd be great if you could go into more detail of how ads could load fileless malware. Also, great video btw!
@KenHarrisio
@KenHarrisio 7 ай бұрын
@@neocephalon Thanks! That'll be a great topic to cover for a video.
@georgekon69
@georgekon69 2 ай бұрын
@@KenHarrisio i love u man u the best. U helped me understand a lot of things
@SamFischer117
@SamFischer117 7 ай бұрын
I was recommended this video based on my YT algorithm and I really enjoy your delivery and explanations about these certain fileless malware types. It was a good medium between getting too in-depth and general overview of this subject,. As a long-time Mac user who is pretty new to having my own custom PC, I look forward to more content from you! Definitely got a like a sub from me. 👍👍
@KenHarrisio
@KenHarrisio 7 ай бұрын
Awesome, thanks for the support! 🍻
@thegaminghero2201
@thegaminghero2201 7 ай бұрын
You should do a video on how to detect and remove different types of malware that use certain tricks to be harder to detect by anti malware software
@KenHarrisio
@KenHarrisio 7 ай бұрын
Good idea, thanks for the suggestion! I'll add it to the video roster.
@naofacadieta5066
@naofacadieta5066 7 ай бұрын
Excellent content; We live in a cyber war and our data is a mine and the types of attacks are varied and its content provides a good basis for understanding and minimizing damage and protecting ourselves in a certain way. I'm not waiting for the configuration of the opnsense firewall for domestic protection if possible. Thanks.
@KenHarrisio
@KenHarrisio 7 ай бұрын
The firewall config video is definitely overdue. I'll be working on it within another month or so. I've been putting that one off since it's going to be a pretty big undertaking. It's pretty straightforward to setup though and there's plenty of documentation on whatever you might need here: docs.opnsense.org/manual/install.html The challenging part for me is going to be figuring out how to condense all that down into the important stuff to know for a home user that's looking for a configuration that's not overly complicated. I would like to be able to have a playbook for people to use to follow along and want to keep it under 20 pages. Also, I wouldn't worry much about the cyber threats. Enterprise and govs have to constantly deal with attacks that a home user wouldn't deal with. Just having an up to date system with an internet security suite(if applicable) and a browser with ad block and you would be perfectly fine. The issue with cybersecurity content is that it gives the impression that the sky is falling and hackers are around every corner, but this really only applies to enterprise and government. Just the fact that you watch content like this means you are miles ahead of an average user in keeping yourself secure. It's insane how many people still do things like use passwords like "1234."
@P-G-77
@P-G-77 10 күн бұрын
Yes, using IA certain "formal" email is so good write, detailed etc... to me... who know how many people open and just reading the text of the email they immediately thought of something interesting and useful... instead... in the end and always good to check the files you least expect that could be infected.
@mrtophat12
@mrtophat12 7 ай бұрын
Hey man. This is good content! Subscribed.
@KenHarrisio
@KenHarrisio 7 ай бұрын
Awesome, thank you! 🍻
@terryscript64
@terryscript64 Ай бұрын
At 18:05, consider that the advertisements can be incredibly irritating, but they're essential for KZfaqrs like yourself to earn through the KZfaq Partner Program. Without these ads, your revenue stream would dry up.
@KenHarrisio
@KenHarrisio Ай бұрын
It's not something that bothers me personally, but I don't rely on YT for income. I don't think most would bother using one though if the ads weren't so pervasive now.
@dieselbaby
@dieselbaby 7 ай бұрын
Also might be good to do a video on potential for exploits of the recently released TLDs by Google for .zip and .mov - these, especially .zip can be pretty easily combined with some unicode characters (which are compliant with the addressing schema) to fool even otherwise relatively tech savvy individuals into downloading something malicious...even worse if they're expecting it to be a legitimate zip file of something like a github repo and the attacker took the time to carefully cloak the contents to appear legitimate.
@KenHarrisio
@KenHarrisio 7 ай бұрын
Those are good ideas, thanks for the suggestions! I forgot Google decided to start allowing those domains. Pretty much everyone in the IT sector was dumbfounded with that decision because of the abuse that'll happen because of it. I'll also cover browser extensions as well. Those things are an absolute minefield. I'm convinced about 95% of extensions are just crap that the devs use to mine data from people.
@PrinceJohn84
@PrinceJohn84 3 ай бұрын
This is excellent content! A fellow IT professional 👋
@KenHarrisio
@KenHarrisio 3 ай бұрын
Thanks for the support! I like the profile pic btw. I haven't seen that movie in a long time.
@naofacadieta5066
@naofacadieta5066 7 ай бұрын
I managed to configure OPNSENSE with the article you suggested. I installed zenarmor to monitor the LAN port. In your opinion, do you think it is worth placing the suricata IPS monitoring the WAN port? Do you have any additional suggestions and tips in this regard? Thanks!
@KenHarrisio
@KenHarrisio 7 ай бұрын
I would definitely suggest adding it to the WAN port as well since you've already got everything else running. Zenarmor is a really good addon for OPNsense as well. Your network now, even if you don't do anything else with it, is miles ahead of other home users. Here are some other things to consider: If you have any open ports, you could set up a honeypot on a separate network, but it's not something I would really suggest. Unless you have a niche case, I definitely don't suggest having any open ports. There's quite a bit of risk to use a honeypot as well. An IPS will take care of intrusions. DNS filtering is something you could add from the router. I prefer to do this at the PC/other device level, but the preference is entirely with the home user. There may be times you want to switch DNS providers on the fly or need to turn it off for a moment for compatibility, which is easier to do if you set it per computer. If you have any sort of security system, IOT devices, cameras, etc, it would be a good idea to have them on separate networks. I.e. smart devices get their own network. If you aren't already familiar with network logs, I would suggest spending a couple hours going over logs related to system function, firewall actions, and IPS. I don't recommend checking these a lot. A couple times a week would be sufficient unless you think something might be going on. IPS will automatically take care of intruders. One last thing, if you have remote access for your router, I strongly recommend using 2FA and turn on rate limiting.
@Bakuyagn
@Bakuyagn Ай бұрын
My computer just got virus in windows 11 and use my RAM and it's remove my boot file when i run offline defender virus scan, but i didn't know where i got this virus, maybe from my new SSD?
@KenHarrisio
@KenHarrisio Ай бұрын
It's possible that it came from the new SSD. What is the brand and model of it and where did you get it? I'll have a look to see if that might have been the issue. Also, did your antivirus say what the name of the virus is?
@Bakuyagn
@Bakuyagn Ай бұрын
@@KenHarrisio My boot sector is 0 Install after i scan with Microsoft offline defender and didn't boot normal
@roryscott3041
@roryscott3041 2 ай бұрын
Think it was Linus tech tips lol got sent a giant PDF and his virus scanner didn't pick it up
Where People Go When They Want to Hack You
34:40
CyberNews
Рет қаралды 29 М.
This Malware Will Hijack Your Bank Account And Gmail
22:50
Ken Harris
Рет қаралды 278 М.
ШЕЛБИЛАР | bayGUYS
24:45
bayGUYS
Рет қаралды 542 М.
Glow Stick Secret 😱 #shorts
00:37
Mr DegrEE
Рет қаралды 115 МЛН
Normal vs Smokers !! 😱😱😱
00:12
Tibo InShape
Рет қаралды 16 МЛН
Downloading and running the 100 Malware links
13:33
The PC Security Channel
Рет қаралды 160 М.
Nameservers in DNS - What are...
6:04
Eli the Computer Guy
Рет қаралды 34 М.
Bug Bounty Hunters are WRONG about this‘ OR 1=1
11:01
Bug Hunter Labs
Рет қаралды 2,9 М.
What Kinds of Files Can Be Viruses?
14:08
ThioJoe
Рет қаралды 235 М.
German State Is Ditching Windows For Linux
30:23
Ken Harris
Рет қаралды 56 М.
What The Microsoft Hack Means For You
18:22
Ken Harris
Рет қаралды 86 М.
How risky is Piracy: Do cracks contain malware?
8:00
The PC Security Channel
Рет қаралды 435 М.
Demo 17 - Fileless Malware Attack Chain - VBA, WMI, and PowerShell
6:49
CNames in DNS - What are...
5:10
Eli the Computer Guy
Рет қаралды 47 М.
Create Custom FILELESS MALWARE on FULLY PATCHED WINDOWS 10!
34:40
Daniel Lowrie
Рет қаралды 11 М.
Такого вы точно не видели #SonyEricsson #MPF10 #K700
0:19
BenJi Mobile Channel
Рет қаралды 3,3 МЛН
Creepy Samsung Alarm cannot be turned off 😱🤣 #shorts
0:14
Adani Family
Рет қаралды 1,5 МЛН
Xiaomi Note 13 Pro по безумной цене в России
0:43
Простые Технологии
Рет қаралды 198 М.
Я Создал Новый Айфон!
0:59
FLV
Рет қаралды 2,8 МЛН