Finding and Exploiting Critical Vulnerabilities in RPC Services - NorthSec 2023
Offered By: NorthSec via YouTube
Course Description
Overview
Explore the process of discovering and reporting critical security vulnerabilities in an RPC service widely used by large companies in this 28-minute conference talk from NorthSec. Learn about preparing applications for analysis, reverse engineering binary protocols, and understanding RPC service authentication and message processing. Discover techniques for bypassing user authentication, finding and exploiting various vulnerabilities, and creating Metasploit modules. Gain insights into the full vulnerability research lifecycle, from initial discovery to coordinated disclosure with vendors, in this comprehensive end-to-end exploration of security research practices.
Syllabus
NSEC2023 - the moon and back: How we found and exploited a series of critical vulns in an RPC srv
Taught by
NorthSec
Related Courses
Don't Ruck Us Too Hard - Owning All of Ruckus AP Devicesnullcon via YouTube Attacking ADFS Endpoints with PowerShell
YouTube Practical HTTP Header Smuggling - Sneaking Past Reverse Proxies to Attack AWS and Beyond
Black Hat via YouTube 200+ Vulnerabilities in Android Phones
Hack In The Box Security Conference via YouTube Systems Applications Proxy Pwnage
44CON Information Security Conference via YouTube