Books & Videos

Table of Contents

  1. Chapter 1 Bug Hunting

    1. 1.1 For Fun and Profit

    2. 1.2 Common Techniques

    3. 1.3 Memory Errors

    4. 1.4 Tools of the Trade

    5. 1.5 EIP = 41414141

    6. 1.6 Final Note

  2. Chapter 2 Back to the ’90s

    1. 2.1 Vulnerability Discovery

    2. 2.2 Exploitation

    3. 2.3 Vulnerability Remediation

    4. 2.4 Lessons Learned

    5. 2.5 Addendum

  3. Chapter 3 Escape from the WWW Zone

    1. 3.1 Vulnerability Discovery

    2. 3.2 Exploitation

    3. 3.3 Vulnerability Remediation

    4. 3.4 Lessons Learned

    5. 3.5 Addendum

  4. Chapter 4 NULL Pointer FTW

    1. 4.1 Vulnerability Discovery

    2. 4.2 Exploitation

    3. 4.3 Vulnerability Remediation

    4. 4.4 Lessons Learned

    5. 4.5 Addendum

  5. Chapter 5 Browse and You’re Owned

    1. 5.1 Vulnerability Discovery

    2. 5.2 Exploitation

    3. 5.3 Vulnerability Remediation

    4. 5.4 Lessons Learned

    5. 5.5 Addendum

  6. Chapter 6 One Kernel to Rule Them All

    1. 6.1 Vulnerability Discovery

    2. 6.2 Exploitation

    3. 6.3 Vulnerability Remediation

    4. 6.4 Lessons Learned

    5. 6.5 Addendum

  7. Chapter 7 A Bug Older Than 4.4BSD

    1. 7.1 Vulnerability Discovery

    2. 7.2 Exploitation

    3. 7.3 Vulnerability Remediation

    4. 7.4 Lessons Learned

    5. 7.5 Addendum

  8. Chapter 8 The Ringtone Massacre

    1. 8.1 Vulnerability Discovery

    2. 8.2 Crash Analysis and Exploitation

    3. 8.3 Vulnerability Remediation

    4. 8.4 Lessons Learned

    5. 8.5 Addendum

  1. Appendix Hints for Hunting

    1. A.1 Stack Buffer Overflows

    2. A.2 NULL Pointer Dereferences

    3. A.3 Type Conversions in C

    4. A.4 GOT Overwrites

  2. Appendix Debugging

    1. B.1 The Solaris Modular Debugger (mdb)

    2. B.2 The Windows Debugger (WinDbg)

    3. B.3 Windows Kernel Debugging

    4. B.4 The GNU Debugger (gdb)

    5. B.5 Using Linux as a Mac OS X Kernel-Debugging Host

  3. Appendix Mitigation

    1. C.1 Exploit Mitigation Techniques

    2. C.2 RELRO

    3. C.3 Solaris Zones

  4. Appendix Updates

  5. Colophon