Ce diaporama a bien été signalé.
Nous utilisons votre profil LinkedIn et vos données d’activité pour vous proposer des publicités personnalisées et pertinentes. Vous pouvez changer vos préférences de publicités à tout moment.
ROP & ROLL 
An introduction to modern offensive techniques 
Alex Moneger 
Security Engineer
Goals & limitations 
 Gain an understanding of modern exploits 
 Provide solid foundations to continue self-learning 
 ...
Training plan 
 Day 1 
1. Introduction to the cdecl ABI and 
the x86 stack 
2. Tools cheatsheet 
3. Old times: Aleph1 sty...
Prochain SlideShare
Chargement dans…5
×

01 - An introduction to modern offensive techniques

* Gain an understanding of modern exploits
* Provide solid foundations to continue self-learning
* Hands on approach

  • Soyez le premier à commenter

  • Soyez le premier à aimer ceci

01 - An introduction to modern offensive techniques

  1. 1. ROP & ROLL An introduction to modern offensive techniques Alex Moneger Security Engineer
  2. 2. Goals & limitations  Gain an understanding of modern exploits  Provide solid foundations to continue self-learning  Hands on approach © 2013-2014 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 2
  3. 3. Training plan  Day 1 1. Introduction to the cdecl ABI and the x86 stack 2. Tools cheatsheet 3. Old times: Aleph1 style BoF 4. Standard OS defenses 5. Ret2libc style attacks  Day 2 1. The ELF binary 2. No N/X ASLR bypass 3. Introduction to ROP 4. ASLR, N/X bypass 5. ROP mitigations  Extras if time permits 1. Advanced ROP techniques 2. ROP evolutions © 2013-2014 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 3

×