Black Hat USA 2018 - DeepLocker - Concealing Targeted Attacks with AI Locksmithing @HackersOnBoard
Black Hat USA 2018 - DeepLocker - Concealing Targeted Attacks with AI Locksmithing  @HackersOnBoard
Uploaded October 2019 | Updated September 2026, 4 days ago
In this talk, we describe DeepLocker, a novel class of highly targeted and evasive attacks powered by artificial intelligence (AI). As cybercriminals increasingly weaponize AI, cyber defenders must understand the mechanisms and implications of the malicious use of AI in order to stay ahead of these threats and deploy appropriate defenses.

DeepLocker was developed as a proof of concept by IBM Research in order to understand how several AI and malware techniques already being seen in the wild could be combined to create a highly evasive new breed of malware, which conceals its malicious intent until it reached a specific victim. It achieves this by using a Deep Neural Network (DNN) AI-model to hide its attack payload in benign carrier applications, while the payload will only be unlocked if—and only if —the intended target is reached. DeepLocker leverages several attributes for target identification, including visual, audio, geolocation, and system-level features. In contrast to existing evasive and targeted malware, this method would make it extremely challenging to reverse engineer the benign carrier software and recover the mission-critical secrets, including the attack payload and the specifics of the target.

We will perform a live demonstration of a proof-of-concept implementation of a DeepLocker malware, in which we camouflage well-known ransomware in a benign application such that it remains undetected by malware analysis tools, including anti-virus engines and malware sandboxes. We will discuss technical details, implications, and use cases of DeepLocker. More importantly, we will share countermeasures that could help defend against this type of attack in the wild.
Black Hat USA 2018 - DeepLocker - Concealing Targeted Attacks with AI LocksmithingDEF CON 27 - Bill Swearingen - HAKC THE POLICEDEF CON 27 - Breaking The Back End It Is Not Always A Bug Sometimes It Is Just Bad DesignDEF CON 27 - 100 Seconds of Solitude Defeating Cisco Trust Anchor With FPGA Bitstream ShenanigansDEF CON 27 - Panel - DEF CON to help hackers anonymously submit bugs to the government discussDEF CON 27 - Alvaro Munoz - SSO Wars The Token MenaceBlack Hat USA 2018 - Fire & Ice Making and Breaking macOS FirewallsDEF CON 27 - smea - Adventures In Smart Buttplug Penetration testingDEF CON 27 - Unpacking Pkgs A Look Inside Macos Installer Packages And Common Security FlawsBlack Hat USA 2018 - Dissecting Non Malicious Artifacts One IP at a TimeDEF CON 27 - Brent Stone - Reverse Engineering 17 plus Cars in Less Than 10 MinutesDEF CON 27 - Bruce Schneier - Information Security in the Public Interest
HackersOnBoard |

Black Hat USA 2018 - DeepLocker - Concealing Targeted Attacks with AI Locksmithing

SHARE TO X SHARE TO REDDIT SHARE TO FACEBOOK WALLPAPER