String Oriented Programming
Circumventing ASLR, DEP, and Other Guards
Original File: 28c3-4817-en-string_oriented_programming_h264.mp4 |
About: String Oriented Programming | Report Broken File | embed video
About: String Oriented Programming | Report Broken File | embed video
The protection landscape is changing and exploits are getting more and more sophisticated. Exploit generation toolkits can be used to construct exploits for specific applications using well-defined algorithms. We present such an algorithm for leveraging format strings and introduce string oriented programming.
Persons:- Mathias Payer