YoVDO

COMpromise - Remote Code Execution in Windows Development Environments

Offered By: nullcon via YouTube

Tags

nullcon Courses Reverse Engineering Courses Microsoft Visual Studio Courses Remote Code Execution (RCE) Courses Remote Code Execution Courses

Course Description

Overview

Explore the security vulnerabilities in Windows development environments through this conference talk from NULLCON Goa 2020. Discover how simply viewing or compiling untrusted source code can lead to remote code execution on a developer's workstation. Delve into the intricacies of Component Object Model (COM), type libraries, and Visual Studio's inner workings as the speaker demonstrates full exploit chains. Learn about the risks associated with common practices like downloading code from sharing platforms such as GitHub. Gain insights into securing development environments and understanding the potential dangers of interacting with untrusted code in integrated development environments for Windows.

Syllabus

COMpromise: remote code execution in Windows development environments | Stan Hegt | NULLCON Goa 2020


Taught by

nullcon

Related Courses

BurpSuite Extensions
YouTube
Web Hacking - Técnicas de Invasão em Ambientes Web [Pentest]
Udemy
JavaScript Security
Infosec via Coursera
CVE Series: Log4J (CVE-2021-44228)
Cybrary
CVE-2021-44228 - Log4j - Minecraft Vulnerable and So Much More
John Hammond via YouTube