YoVDO

Uncursing the ncurses

Offered By: 44CON Information Security Conference via YouTube

Tags

44CON Courses Security Research Courses

Course Description

Overview

Save Big on Coursera Plus. 7,000+ courses at $160 off. Limited Time Only!
Explore a comprehensive analysis of memory corruption vulnerabilities discovered in ncurses, identified as CVE-2023-29491, in this 44-minute conference talk from the 44CON Information Security Conference. Delve into the potential impacts of these vulnerabilities, ranging from memory leaks and denial-of-service attacks to privilege escalation and arbitrary code execution. Learn about the history of ncurses, a widely-used library for developing text-based user interface programs, and understand its significance in various operating systems. Discover the process of selecting ncurses for scrutiny, the concept of terminal databases and terminfo format, and how a single environment variable can trigger these vulnerabilities. Gain insights from Emanuele Cozzi, a Security Researcher at Microsoft Defender, as he shares his expertise in Linux security, binary analysis, and malware research.

Syllabus

Emanuele Cozzi - Uncursing the ncurses


Taught by

44CON Information Security Conference

Related Courses

Assembly Language Adventures (1): Counting with two digits
Udemy
Assembly Language Adventures: Complete Course
Udemy
OWASP Top 10 - A10:2021 - Server-Side Request Forgery (SSRF)
Cybrary
Analyzing Wi-Fi Wardriving Data with Google Colab
SecurityFWD via YouTube
Firing Rounds at the Analysis Shooting Gallery - CSAW'16 Security Workshop
New York University (NYU) via YouTube