YoVDO

Finding 0days in Embedded Systems with Code Coverage Guided Fuzzing

Offered By: BruCON Security Conference via YouTube

Tags

BruCON Courses Embedded Systems Security Courses Vulnerability Research Courses Dynamic Binary Instrumentation Courses

Course Description

Overview

Explore advanced techniques for discovering vulnerabilities in embedded systems through code coverage guided fuzzing in this 58-minute conference talk from BruCON Security Conference. Delve into the challenges of applying this trending methodology to embedded devices like network routers and IP cameras. Learn how to overcome obstacles such as closed ecosystems, lack of source code, and limited architecture support. Discover innovative approaches including firmware emulation, a new lightweight dynamic binary instrumentation framework supporting multiple architectures, and a powerful guided fuzzer for binary-only applications. Gain insights into real-world applications, including the discovery of critical 0-day vulnerabilities in popular embedded network devices. Experience a deeply technical yet engaging presentation featuring exciting demonstrations and potential public disclosure of newly discovered bugs.

Syllabus

11 - BruCON 0x0A - Finding 0days in embedded systems with code coverage guided fuzzing


Taught by

BruCON Security Conference

Related Courses

CompTIA Security+ (SY0-601) Cert Prep: 7 Endpoint Security Design and Implementation
LinkedIn Learning
SSCP Cert Prep: 7 Systems and Application Security
LinkedIn Learning
The Internet of Insecure Things - 10 Most Wanted List
YouTube
ICEFALL - Revisiting A Decade Of OT Insecure-By-Design Practices
Hack In The Box Security Conference via YouTube
Low Level BootROM Protocol Fuzzing Secure Memory Regions
Hack In The Box Security Conference via YouTube