Uploaded April 2026 | Updated September 2026, 2 weeks ago
Hacks Hackers Hate Built In Bins to Bunk Baddies
Presenters: Kellon Benson and Mike Devens
Adversaries consistently rely on free and built-in tools to carry out attacks because they are readily available and effective. This technical presentation focuses on practical, low-effort ways defenders can harden desktop systems to reduce that abuse without adding cost or complexity.
The session covers how to adjust application associations, configure effective local firewall rules, and establish solid baselines before making changes to avoid user disruption. Real-world threat examples are used to show why these attack techniques continue to work and how small defensive improvements can significantly raise the bar for attackers.
You’ll also see demonstrations of baselining tools and measurable outcomes that highlight the impact of these changes. Attendees will leave with actionable strategies they can apply immediately to strengthen endpoints and make adversaries think twice.
No budget is required. These practical techniques are designed to frustrate attackers and meaningfully improve desktop security.
Sign Up for WWHF
wildwesthackinfest.com/wild-west-hackin-fest-mile-high-2026
#cybersecurity #infosec #endpointsecurity #defensivesecurity #bluet eam #hardening #securityoperations #wwhf #wwhf2026
00:06 Cybersecurity Talk Intro & Disclaimer
00:24 Why Detection-Based Security Fails (And What Works Better)
01:23 Proactive Defense Framework: Threats, Breakpoints, Controls
02:30 Security vs Usability: Avoid Breaking the User Experience
04:20 Malicious Ads Explained: How Users Get Infected
06:51 Stop Malware at the Source: Ad Blocking Strategy
09:01 Windows Security Hack #1: Block ISO-Based Attacks
13:02 Windows Security Hack #2: Prevent Script Execution (JS, VBA, CMD)
19:03 Block Malware Downloads with Windows Firewall (LOLbins)
22:10 ClickFix Attack Explained + How to Disable Risky Hotkeys
27:26 Lock Down Win+X Menu & Common Implementation Mistakes
30:38 Key Takeaways: Simple Ways to Harden Windows Security
33:03 Resources, Tools & Audience Q&A
///Black Hills Infosec Socials
Twitter: twitter.com/BHinfoSecurity
Mastodon: https://infosec.exchange/@blackhillsinfosec
LinkedIn: linkedin.com/company/antisyphon-training
Discord: discord.gg/ffzdt3WUDe
///Black Hills Infosec Shirts & Hoodies
spearphish-general-store.myshopify.com/collections/bhis-shirt-collections
///Black Hills Infosec Services
Active SOC: blackhillsinfosec.com/services/active-soc
Penetration Testing: blackhillsinfosec.com/services
Incident Response: blackhillsinfosec.com/services/incident-response
///Backdoors & Breaches - Incident Response Card Game
Backdoors & Breaches: backdoorsandbreaches.com
Play B&B Online: play.backdoorsandbreaches.com
///Antisyphon Training
Pay What You Can: antisyphontraining.com/pay-what-you-can
Live Training: antisyphontraining.com/course-catalog
On Demand Training: antisyphontraining.com/on-demand-course-catalog
Antisyphon Discord: discord.gg/antisyphon
Antisyphon Mastodon: https://infosec.exchange/@Antisy_Training
///Educational Infosec Content
Black Hills Infosec Blogs: blackhillsinfosec.com/blog
Wild West Hackin' Fest YouTube: youtube.com/wildwesthackinfest
Antisyphon Training YouTube: youtube.com/antisyphontraining
Active Countermeasures YouTube: youtube.com/activecountermeasures
Threat Hunter Community Discord: discord.gg/threathunter
Join us at the annual information security conference in Deadwood, SD (in-person and virtually) — Wild West Hackin' Fest: wildwesthackinfest.com
Hacks Hackers Hate Built In Bins to Bunk Baddies
Presenters: Kellon Benson and Mike Devens
Adversaries consistently rely on free and built-in tools to carry out attacks because they are readily available and effective. This technical presentation focuses on practical, low-effort ways defenders can harden desktop systems to reduce that abuse without adding cost or complexity.
The session covers how to adjust application associations, configure effective local firewall rules, and establish solid baselines before making changes to avoid user disruption. Real-world threat examples are used to show why these attack techniques continue to work and how small defensive improvements can significantly raise the bar for attackers.
You’ll also see demonstrations of baselining tools and measurable outcomes that highlight the impact of these changes. Attendees will leave with actionable strategies they can apply immediately to strengthen endpoints and make adversaries think twice.
No budget is required. These practical techniques are designed to frustrate attackers and meaningfully improve desktop security.
Sign Up for WWHF
wildwesthackinfest.com/wild-west-hackin-fest-mile-high-2026
#cybersecurity #infosec #endpointsecurity #defensivesecurity #bluet eam #hardening #securityoperations #wwhf #wwhf2026
00:06 Cybersecurity Talk Intro & Disclaimer
00:24 Why Detection-Based Security Fails (And What Works Better)
01:23 Proactive Defense Framework: Threats, Breakpoints, Controls
02:30 Security vs Usability: Avoid Breaking the User Experience
04:20 Malicious Ads Explained: How Users Get Infected
06:51 Stop Malware at the Source: Ad Blocking Strategy
09:01 Windows Security Hack #1: Block ISO-Based Attacks
13:02 Windows Security Hack #2: Prevent Script Execution (JS, VBA, CMD)
19:03 Block Malware Downloads with Windows Firewall (LOLbins)
22:10 ClickFix Attack Explained + How to Disable Risky Hotkeys
27:26 Lock Down Win+X Menu & Common Implementation Mistakes
30:38 Key Takeaways: Simple Ways to Harden Windows Security
33:03 Resources, Tools & Audience Q&A
///Black Hills Infosec Socials
Twitter: twitter.com/BHinfoSecurity
Mastodon: https://infosec.exchange/@blackhillsinfosec
LinkedIn: linkedin.com/company/antisyphon-training
Discord: discord.gg/ffzdt3WUDe
///Black Hills Infosec Shirts & Hoodies
spearphish-general-store.myshopify.com/collections/bhis-shirt-collections
///Black Hills Infosec Services
Active SOC: blackhillsinfosec.com/services/active-soc
Penetration Testing: blackhillsinfosec.com/services
Incident Response: blackhillsinfosec.com/services/incident-response
///Backdoors & Breaches - Incident Response Card Game
Backdoors & Breaches: backdoorsandbreaches.com
Play B&B Online: play.backdoorsandbreaches.com
///Antisyphon Training
Pay What You Can: antisyphontraining.com/pay-what-you-can
Live Training: antisyphontraining.com/course-catalog
On Demand Training: antisyphontraining.com/on-demand-course-catalog
Antisyphon Discord: discord.gg/antisyphon
Antisyphon Mastodon: https://infosec.exchange/@Antisy_Training
///Educational Infosec Content
Black Hills Infosec Blogs: blackhillsinfosec.com/blog
Wild West Hackin' Fest YouTube: youtube.com/wildwesthackinfest
Antisyphon Training YouTube: youtube.com/antisyphontraining
Active Countermeasures YouTube: youtube.com/activecountermeasures
Threat Hunter Community Discord: discord.gg/threathunter
Join us at the annual information security conference in Deadwood, SD (in-person and virtually) — Wild West Hackin' Fest: wildwesthackinfest.com










