Linux Heap Exploitation - Part 2

所在平台: Udemy

课程主页: https://www.udemy.com/course/linux-heap-exploitation-part-2/

课程评论:没有评论

第一个写评论        关注课程

课程简介

Coursera 课程《Linux Heap Exploitation - Part 2》内容总结: **课程概述:** 本课程是《Linux Heap Exploitation - Part 1》的进阶版本,专注于深入的内存堆栈利用技术。如果未完成第一部分,强烈建议先学习,以便更好地理解本课程内容。课程继续采用动手实践的方式,教授更多新的堆栈利用技术。 **核心内容:** * **更高级的堆利用技术:** 涵盖更复杂的利用手法,例如“House of Rabbit”(兔子之家)和“House of Spirit”(精神之家)。 * **单字节溢出挑战:** 包含一个针对单字节空值溢出的挑战,以检验和提升学习者的技能。 * **tcache 机制:** 深入学习 tcache 机制,并介绍 Tcache Dup(tcache 复制)利用技术。 * **malloc 内部机制:** 探讨更多关于 malloc 的底层细节,例如 glibc 的可调参数(glibc tunables)。 * **实战环境:** 课程假定学习者已具备通过第一部分建立的利用开发环境。 **学习目标:** 通过本课程,学习者将能够掌握一系列更高级的 Linux 堆栈利用技术,从而在漏洞利用开发领域获得更深入的实践能力。 **前提条件:** 建议完成《Linux Heap Exploitation - Part 1》。

课程评论(0条)

课程详情

This is a continuation of the HeapLAB Part 1 course, a.k.a Linux Heap Exploitation - Part 1.If you haven't taken the above course, I highly recommend you do so before embarking on this one.HeapLAB Part 2 is the same hands-on, practical heap exploitation, just with more new techniques for you to learn!We're covering some more Houses, including the rather complex House of Rabbit and the oldschool House of Spirit. If you didn't break a sweat during Part 1's One-Byte challenge, in which we exploited a single byte overflow, I've built a single null-byte overflow challenge for you to test your skills against. We'll also be learning about the tcache, the Tcache Dup technique, some more obscure malloc internals such as the glibc tunables, and plenty more besides. Check out the primary learning objectives for further details.If you already have an exploit development environment set up from Part 1, you'll be able to start right away. Hack the planet!You can stop reading now, this part is only here because Udemy seem to think their time is best spent enforcing arbitrary limits on the length of course descriptions and telling us we can't have text in our course images rather than improving their appalling instructor experience.

课程标签

0人关注该课程

主题相关的课程