YoVDO

Uncursing the ncurses

Offered By: 44CON Information Security Conference via YouTube

Tags

44CON Courses Security Research Courses

Course Description

Overview

Save Big on Coursera Plus. 7,000+ courses at $160 off. Limited Time Only!
Explore a comprehensive analysis of memory corruption vulnerabilities discovered in ncurses, identified as CVE-2023-29491, in this 44-minute conference talk from the 44CON Information Security Conference. Delve into the potential impacts of these vulnerabilities, ranging from memory leaks and denial-of-service attacks to privilege escalation and arbitrary code execution. Learn about the history of ncurses, a widely-used library for developing text-based user interface programs, and understand its significance in various operating systems. Discover the process of selecting ncurses for scrutiny, the concept of terminal databases and terminfo format, and how a single environment variable can trigger these vulnerabilities. Gain insights from Emanuele Cozzi, a Security Researcher at Microsoft Defender, as he shares his expertise in Linux security, binary analysis, and malware research.

Syllabus

Emanuele Cozzi - Uncursing the ncurses


Taught by

44CON Information Security Conference

Related Courses

Supply Chain Unchained - How To Be A Bad SaaS
44CON Information Security Conference via YouTube
Aviation Security 101
44CON Information Security Conference via YouTube
The Anti-Checklist Manifesto
44CON Information Security Conference via YouTube
Why Are We Still Doing Authentication Wrong?
44CON Information Security Conference via YouTube
What Do Hackers See When They Look at the Clouds
44CON Information Security Conference via YouTube