Yet another great year at Security BSides SF, and still one more day to go! The talks have been quite good and diverse. As promised, I wanted to post the presentation, "Thinking Outside the [Sand]box," in case anyone wants to check it out.
If you missed the talk, it was about how you can leverage malware analysis evasion techniques in order to trick malware into thinking it is running in a sandbox when executed on your personal computer. In other words, inoculate your machine from malware that actively avoids analysis. Instead of executing its payload, it will just terminate for fear that it will be detected and have a signature published as a result.