May TASK: Windows VBScript Use-After-Free Vulnerability and Exploit Kit Analysis / They Phish, We Catch

Wednesday 29-May-2019 // 6:00 – 9:00 PM
Meeting Location: Michener Auditorium at UHN, 222 St. Patrick Street, Toronto


May TASK

Speaker: Joe Wu
Topic: Windows VBScript Use-After-Free Vulnerability and Exploit Kit Analysis

What does a Use-After-Free vulnerability look like? How do exploit kits exploit it to deliver bank trojans? Is Windows 10 the same exploitability as Windows 7? In this session, I would like to give a live example in 2019, showing how it creates a type confusion condition in Windows VBScript engine, bypasses Windows security defenses, steals your information, and runs ransomware. We will see what we can do to prevent from being hacked.

Speaker: Jeremy Richards
Topic: They Phish, We Catch

Two years ago Jeremy switched gears from reversing engineering malware to hunting the infrastructure it uses to communicate with it’s authors after deployment (C2 servers). He has been refining this data collection and analysis into a repeatable, automated system that uses the collected data in machine learning models to capture and convict malware and phishing content.

Pull up a chair as we look at the phishing campaigns Lookout’s @PhishingAI has identified targeting government, enterprise, and individuals over the last two years. We will discuss discovery and observed evasion tactics, trends, and dox a couple of kit authors.


This month’s TASK is sponsored by CIBC.

At CIBC, we’re building a relationship-oriented bank for a modern world. We’re looking for passionate collaborators, innovators, advisors, and leaders who share our commitment to putting our clients at the centre of everything we do, working together as one team, and caring for our communities.

What CIBC Offers
At CIBC, our people are our strength. You’ll become part of an inclusive and diverse team that acknowledges unique talents, and empowers team members to bring the best of CIBC to our clients with each interaction and every decision we make.

As part of our team, you will:

  • Thrive: Benefit from an open culture that provides the flexibility and support you need to integrate your life at work and at home
  • Connect: Work in a place where technology and work environment fosters innovation, collaboration and creativity
  • Develop: Grow your skills and career through ongoing learning opportunities, individual development planning and comprehensive product training
  • Prosper: Share in our collective success with a competitive salary, incentive pay, employee banking offer, health benefits, and employee share purchase plan

ü Apply for career opportunities on cibc.com/careers
ü Stay connected with your Talent Acquisition Partner: Brandon Lee
ü Refer your peers to future CIBC events


Meeting Location: Michener Auditorium, 222 St. Patrick Street, Toronto.

Posted in Events.