Posts: (234)

DEPS - Precise Heap Spray on Firefox and IE10

Introduction

Last week, while doing my bi-weekly courseware review and update, I discovered that my heap spray script for Firefox 9 no longer works on recent versions.  Looking back at the type of tricks I had to use to Read more

Read More

Heap Layout Visualization with mona.py and WinDBG

Introduction

Time flies. Almost 3 weeks have passed since we announced the ability to run mona.py under WinDBG.  A lot of work has been done on mona.py in the meantime.  We improved stability and performance, updated to pykd.pyd 0.2.0.14 Read more

Read More

Jingle BOFs, Jingle ROPs, Sploiting all the things... with Mona v2 !!

Ho Ho Ho friends,

It has been a while since we posted something on the Corelan Team blog, I guess we all have been busy doing ... stuff and things, here and there.  Nevertheless, as the year is close Read more

Read More

Happy New Year - here's my special gift to you, corelanc0d3r

I'm not going to spend a lot of words on this. Facts speak for themselves. 

A short while ago, I discovered this:

http://www.hackforums.net/showthread.php?tid=3031925

(you need to register to get access to the thread).  Screenshot :

idle-hands profile :

Reputation

Read more

Read More

Corelan T-Shirt contest - Derbycon 2012

If you didn't register your ticket for the Corelan Live Exploit Development training at Derbycon 2012, then there is bad news for you...   We're sold out.

Not all is lost though. For the second year in a row, Corelan Read more

Read More

HITB2012AMS Day 2 - Ghost in the Allocator

Ghost in the Allocator - Abusing the Windows 7 / 8 Low Fragmentation Heap

After introducing himself, Steven Seeley, Senior Penetration Tester and Security Researcher at Stratsec starts his presentation by sharing the talk agenda:

Read More

HITB2012AMS Day 2 - Attacking XML Processing

Attacking XML Processing

Dressed in a classy Corelan Team T-Shirt, Nicolas Grégoire kicks off his presentation by introducing himself. Nicolas has been asked by a customer to audit some XML-DSig applications 18 months ago and found a number of Read more

Read More

HITB2012AMS Day 2 - Taint Analysis

Automatically Searching for Vulnerabilities: How to use Taint Analysis to find Security Flaws

(by Alex Bazhanyuk (not present) and Nikita Tarakanov, Reverse Engineers, CISS)

Nikita explains they have been working on reversing binaries and auditing source code for a Read more

Read More

HITB2012AMS Day 2 - PostScript - Danger Ahead

Good morning everyone, welcome back at Hack In The Box 2012 Amsterdam !

Before looking at the first talk that I attended today, I would like to mention that you can find copies of the talks and materials on Read more

Read More

HITB2012AMS Day 1 - Window Shopping

Window Shopping: Browser Bugs Hunting in 2012

In the last talk of Day 1, Roberto Suggi Liverani and Scott Bell (not present during the presentation),  security consultants at Security-Assessment.com, will share the results of some intensive browser Read more

Read More