video thumbnail 9:51
Overflowing Function Pointers On The Heap?

2021-10-17

[public] 5.32K views, 1.17K likes, 4.00 dislikes audio only

channel thumbLiveOverflow

After we found some function pointers we could use for exploitation, we instructed sudo to find their heap locations. And then we are developing a script to find a heap layout usable for exploitation.

Complete Playlist: https://www.youtube.com/playlist?list=PLhixgUqwRTjy0gMuT4C3bmjeZjuNQyqdx

Grab the files: https://github.com/LiveOverflow/pwnedit

Episode 11:

00:00 - Intro

00:40 - The Research Plan

02:09 - Collecting Heap Information

02:40 - Testing the "Instrumentation" - First Problem

04:00 - Understanding Heap Information Output

04:34 - Heap Fragemntation Explained

05:10 - Which Inputs to Control?

05:35 - Writing the Fuzzing Heap Layouts Sripts

07:37 - Development Challenges

08:28 - The Script Results!

09:30 - Outro

-=[ ā¤ļø Support ]=-

→ per Video: https://www.patreon.com/join/liveoverflow

→ per Month: https://www.youtube.com/channel/UClcE-kVhqyiHCcjYwcpfj9w/join

-=[ šŸ• Social ]=-

→ Twitter: https://twitter.com/LiveOverflow/

→ Instagram: https://instagram.com/LiveOverflow/

→ Blog: https://liveoverflow.com/

→ Subreddit: https://www.reddit.com/r/LiveOverflow/

→ Facebook: https://www.facebook.com/LiveOverflow/


Intro
/youtube/video/CYWoJ6EYo84?t=0
The Research Plan
/youtube/video/CYWoJ6EYo84?t=40
Collecting Heap Information
/youtube/video/CYWoJ6EYo84?t=129
Testing the "Instrumentation" - First Problem
/youtube/video/CYWoJ6EYo84?t=160
Understanding Heap Information Output
/youtube/video/CYWoJ6EYo84?t=240
Heap Fragemntation Explained
/youtube/video/CYWoJ6EYo84?t=274
Which Inputs to Control?
/youtube/video/CYWoJ6EYo84?t=310
Writing the Fuzzing Heap Layouts Sripts
/youtube/video/CYWoJ6EYo84?t=335
Development Challenges
/youtube/video/CYWoJ6EYo84?t=457
The Script Results!
/youtube/video/CYWoJ6EYo84?t=508
Outro
/youtube/video/CYWoJ6EYo84?t=570
I’m moving, no videos sorry 17,541 views
/youtube/video/9CS3q0uG1LI
Support liveoverflow.com
https://liveoverflow.com/support
Sudo Vulnerability Walkthrough by LiveOverflow
/youtube/video/TLa2VqcGGEQ