This short post is to invite you to an excellent conference: Hackito Ergo Sum 2012, I
will be presenting Easy Local WindowsKernel Exploitation and we have some free tickets to give away so email ASAP to info@ioactive.com asking for them. See you
there!
Monday, March 12, 2012
Tuesday, March 6, 2012
Enter the Dragon(Book), Part 1
This is a fairly large topic;
I’ve summarized and written in a somewhat narrative/blog friendly way here.
A few years ago I was reading a blog
about STL memory allocators (http://blogs.msdn.com/b/vcblog/archive/2008/08/28/the-mallocator.aspx), memory allocators being a source of extreme security risk, I
took the author’s statement, “I've carefully implemented all of the integer overflow checks and so forth
that would be required in real production code.” as a bit of a challenge.
Labels:
backdoorhiding,
Compiler “exploits”,
defcon,
ioactive,
ioactive labs,
shane macauley,
specification exploitation,
underhanded c
Subscribe to:
Posts (Atom)