GPG Memory Forensics by Nils Amiet and Sylvain Pelissier | Nullcon Berlin
About this talk
This talk explores the enduring relevance of GnuPG, a popular solution for message encryption, even after nearly 25 years since its inception. The speaker discusses techniques to extract passphrases and encryption keys from memory dumps of the gpg-agent process or a full system dump, showcasing the development of Volatility3 plugins for retrieving key material and original plaintext. The presentation also highlights the application of these techniques as defensive countermeasures, particularly in scenarios involving ransomware attacks.
More from this event
See all 19 talks →
Keynote | High-assurance Code Reviews: How Consulting Works When The Risks Are High by Dan Guido
49:15
Night Track | GNU Anastasis: Privacy-Preserving Key Backup And Recovery by Christian Grothoff
28:47
Fuzzware: Automating & Scaling Fuzzing For Firmware by Tobias Scharnowski & Marius Muench | Nullcon
39:10
CXO Panel | Digital Identity In The Age Of Fintech | Nullcon Berlin 2022
56:07