Video wird geladen...
Video konnte nicht geladen werden
New video on format string vulnerabilities. It's the classic printf(user) bug. An attacker can read and write almost any memory in the process, from a single print statement. I walk through all of it in a live GDB session. Leaking the stack with %p, turning %n into an arbitrary... show more
12,610 Aufrufe • vor 7 Tagen •via X (Twitter)
8 Kommentare

acidburnvor 7 Tagen
java devs discovering printf can spawn a shell

tetsuovor 7 Tagen
I'll cover Apache Log4j next. 😂

Pitchfork & Torch ♞vor 7 Tagen
Hello world?

BullBear.Newsvor 7 Tagen
Using percent n for arbitrary write is a clean demonstration of classic memory corruption risks.

Path of Totalityvor 7 Tagen
Quite educational thanks

Robivor 7 Tagen
Idź mi stąd w pizdu -90 ty kurwa pajacu .

Ricci Researchvor 7 Tagen
Beautiful illustration of the real lesson: the bug isn't a missing bounds check, it's an API where the safe call and the catastrophic one differ by four characters. Compilers have warned about this for twenty years and it still ships, which says more about how warnings get triaged than about the developers.

whyvor 7 Tagen
The single-print-statement angle really shows why printf(user) is far more dangerous than a simple crash.

