Ethical Hacking & Bug Hunting: Buffer Overflow For Beginners

所在平台: Udemy

课程主页: https://www.udemy.com/course/buffer-overflow-course-exploit-development/

课程评论:没有评论

第一个写评论        关注课程

课程简介

**课程名称:** 道德黑客与漏洞挖掘:初学者的缓冲区溢出 **课程概述:** 本课程旨在为您提供漏洞挖掘的实际经验。学完本课程后,您将更好地理解漏洞挖掘者用来查找安全漏洞的方法(逆向工程、漏洞利用开发)。您将学习如何在 Windows 系统上利用缓冲区溢出。这是一门入门课程,从最基本的利用技术讲起,非常适合初学者。许多 IT 专业人士缺乏开始学习缓冲区溢出主题所需的通用软件开发背景,这构成了学习的挑战。本课程将计算机内存管理、代码控制、程序内部数据以及利用低质量软件的复杂技术,转化为 IT 人员(即使没有软件开发知识)都能理解的语言。缓冲区溢出是一种常见的软件编码错误,攻击者可以利用它来控制您的系统。为了有效减少缓冲区溢出漏洞,有必要了解什么是缓冲区溢出、它们对您的应用程序构成哪些威胁,以及攻击者用来成功利用这些漏洞的方法。 **课程内容:** 在本课程中,您将学习如何使用各种工具,例如 Immunity Debugger、Immunity Debugger 的 Mona 库、Metasploit、msfvenom、Spike、File Fuzz 等。本课程注重实践。 课程将解答以下问题: * 什么是缓冲区溢出? * 缓冲区溢出攻击是如何工作的? * 如何查找缓冲区溢出漏洞? * 如何编写缓冲区溢出漏洞利用? **课程大纲(已包含,但根据要求格式化为文本):** * 逆向工程 * 模糊测试应用程序 * 使用调试器检查崩溃 * 通过调试识别错误条件 * 定位 EIP 寄存器 * 识别无效字符 * 定位易受攻击的模块 * 创建最终漏洞利用代码 * 漏洞利用开发 * 在 Windows 上获得远程代码执行 **其他信息:** * 本课程提供 24/7 支持,您可以在问答区提问,我们将在 10 小时内回复。 * **注意:** 本课程仅用于教育目的。

课程评论(0条)

课程详情

The primary goal of this course is to provide you with practical exposure to the world of bug hunting. After taking this course, you will have a better understanding of the approaches (reverse engineering, exploit development) that bug hunters use to find security vulnerabilities. You will learn how to exploit Buffer Overflows on Windows systems. This is an initial course and begins from the very basics of exploitation and is beginner-friendly. The difficulty is that most IT professionals do not have the general software development background required to begin the subject of buffer overflow. This course cuts down the technical subjects of computer memory management, controlling code, and data inside of a working program, and exploiting poor quality software into terms that IT people with no software development knowledge can understand. A buffer overflow is a popular software coding error that an intruder could use to take control over your system. To efficiently decrease buffer overflow vulnerabilities, it is necessary to understand what buffer overflows are, what threats they act to your applications, and what methods attackers use to successfully exploit these vulnerabilities.In this course, you will learn how to use different tools such as Immunity Debugger, Mona library for Immunity Debugger, Metasploit, msfvenom, Spike, File Fuzz and much more. This course is intended to be practical.In this course, we will answer the following questions:What is Buffer Overflow?How do buffer overflow attacks work?How to find buffer overflow vulnerabilities?How to write a buffer overflow exploit?Syllabus:Reverse engineering.Fuzzing applications. Using a debugger to examine the crash. Identifying error conditions using debugging. Targeting the EIP register. Identifying bad characters. Locating the vulnerable module. Creating final exploit code. Exploit development.Gain Remote Code Execution on Windows.With this course you'll get 24/7 support, so if you have any questions you can post them in the Q & A section and we'll respond to you within 10 hours.NOTE: This course is created for educational purposes only.

课程标签

0人关注该课程

主题相关的课程