Annika Clarke

Annika Clarke

Red Teamer & Penetration Tester

Security Risk Advisors

Friday, December 5, 2025
10:00-10:25
Liberty (Live Track 2)

Connect:

About Annika Clarke

Annika Clarke is a red teamer, penetration tester, and offensive security engineer working at Security Risk Advisors. Her focus is on researching and developing novel attack techniques that creatively evade traditional detection mechanisms in real-world client engagements.

Talk Details

25 minIntermediate

Hiding in Plain Sight: Weaponizing Developer Applications and Interpreted Languages to Evade Modern EDR

As endpoint detection and response (EDR) solutions evolve to counter traditional intrusion techniques, organizations often develop a false sense of security, relying heavily on these tools to detect and mitigate threats. This presentation challenges that perception by exposing how trusted developer tools, such as IDE extensions, Electron applications, and interpreted language execution environments can be weaponized to bypass the most sophisticated detection mechanisms. These inherent risks posed by trusted applications and developer environments are often critically overlooked. This talk will demonstrate how to exploit this blind trust through bypassing traditional endpoint controls and signature-based detection due to the use of high-level languages like NodeJS and Python to hijack legitimate applications. Attendees will gain insights into how these methods were developed and successfully deployed during real-world red team engagements.

Session Information

Duration:25 min
Level:Intermediate
Track:Liberty (Live Track 2)
Time:10:00-10:25

Venue Information

Location:
Live! Casino & Hotel Philadelphia
900 Packer Ave, Philadelphia, PA

Date:
Friday, December 5, 2025