Corelan Logo Contest – The submissions
Hi all, As announced a couple of weeks ago, the Corelan Logo contest is now closed, which means we are no longer accepting new submissions. 3 people have submitted one or more designs: Design 1 Design 2 Design 3 Design 4 Design 5 Design 6 […]
Corelan Logo contest – Derbycon 2013
For the third year in a row, I’ll be teaching the Corelan Exploit Dev Bootcamp at Derbycon. If you were able to grab a ticket to the course, you can expect a true bootcamp-style, very hands-on course, spanning 2 (very long) days. I hope you are as excited about it as I am. For the […]
Root Cause Analysis – Integer Overflows
Table of ContentsForewordIntroductionAnalyzing the Crash DataIdentifying the Cause of ExceptionPage heapInitial analysisReversing the Faulty FunctionDetermining ExploitabilityChallengesPrerequisitesHeap BasicsLookaside ListsFreelistsPreventative Security MeasuresSafe-UnlinkingHeap CookiesApplication Specific ExploitationThoughts on This AttackGeneric Exploitation MethodsLookaside List OverwriteOverviewApplication Specific TechniqueWhy Not?Brett Moore: Wrecking Freelist[0] Since 2005Freelist[0] Insert AttackOverviewApplication Specific TechniqueWhy Not?Freelist[0] Searching AttackOverviewApplication Specific TechniqueWhy Not?ConclusionRecommended Reading Foreword Over the past few years, […]