YoVDO

Changing the Colors of Your Keyboard Might Lead to Privilege Escalation

Offered By: nullcon via YouTube

Tags

nullcon Courses Cybersecurity Courses Vulnerability Research Courses

Course Description

Overview

Explore the unexpected security implications of gaming peripherals in this 35-minute conference talk from nullcon. Delve into the research process of analyzing Razer's Linux kernel module, uncovering multiple 0-day vulnerabilities (CVE-2022-29021, CVE-2022-29022, CVE-2022-29023) that are surprisingly influenced by RGB color settings. Witness a live demonstration of exploiting these bugs and their impact on the kernel. Examine modern kernel mitigation techniques that reduce the severity of buffer overflow vulnerabilities, tracing their implementation history with examples. Gain insights into the future landscape of Linux kernel bug hunting from both developer and attacker perspectives, highlighting the often-overlooked security considerations of peripheral device software.

Syllabus

Changing The Colors Of Your Keyboard Might Lead To Privilege Escalation by Tal Lossos & Eran Shimony


Taught by

nullcon

Related Courses

Unearthing Malicious and Risky OpenSource Packages Using Packj
nullcon via YouTube
Pushing Security Left by Mutating Byte Code
nullcon via YouTube
The Faces of MacOS Malware - Detecting Anomalies in a Poisoned Apple
nullcon via YouTube
Contextomy - Let's Debug Together
nullcon via YouTube
Mind The Gap - The Linux Ecosystem Kernel Patch Gap
nullcon via YouTube