Black Hat Briefings, Usa 2007 [audio] Presentations From The Security Conference.

Joe Stewart: Just Another Windows Kernel Perl Hacker



This talk will detail the Windows remote kernel debugging protocol and present a Perl framework for communicating with the kernel debug API over a serial/usb/1394 port from non-Windows systems. This leads to some interesting possibilities for hacking the kernel, such as code injection, hooking, forensics, sandboxing and more, all controlled from a separate non-windows machine.