YoVDO

Advanced Heap Manipulation in Windows 8

Offered By: Black Hat via YouTube

Tags

Black Hat Courses Security Research Courses

Course Description

Overview

Explore advanced heap manipulation techniques in Windows 8 through this Black Hat Europe 2013 conference talk. Delve into the challenges posed by Windows 8's exploit mitigation improvements and learn how to predict heap states with greater accuracy. Discover a new method for precisely manipulating heap layouts in both kernel pools and user heaps, building upon the "Heap Feng Shui" concept. Gain insights into exploiting specific vulnerability scenarios through controlled heap states. Examine practical demonstrations of planting kernel objects at fixed addresses, exploiting write-what-where vulnerabilities, and achieving reliable exploitation in kernel pool overflow scenarios. Investigate the possibilities of heap determinism in Windows 8 user heaps and witness demonstrations of successful heap exploitation through careful layout crafting.

Syllabus

Black Hat EU 2013 - Advanced Heap Manipulation in Windows 8


Taught by

Black Hat

Related Courses

Attack on Titan M, Reloaded - Vulnerability Research on a Modern Security Chip
Black Hat via YouTube
Attacks From a New Front Door in 4G & 5G Mobile Networks
Black Hat via YouTube
AAD Joined Machines - The New Lateral Movement
Black Hat via YouTube
Better Privacy Through Offense - How to Build a Privacy Red Team
Black Hat via YouTube
Whip the Whisperer - Simulating Side Channel Leakage
Black Hat via YouTube