Windows Vista Exploitation Countermeasures.pptVIP

  • 1
  • 0
  • 约8.57千字
  • 约 43页
  • 2017-03-31 发布于广东
  • 举报
Windows Vista Exploitation Countermeasures.ppt

The majority of currently exploited vulnerabilities in Microsoft products are overflows into heap memory Heap exploitation relies on corrupting heap management data or attacking application data within the heap Class objects contain a list of function pointers for each virtual function in the class called a vtable class MyClass { public: MyClass(); virtual ~MyClass(); virtual MemberFunction(); int MemberVariable; }; Overwriting virtual function pointers is the simplest method of heap exploitation VTable Overwrites HEAP_ENTRY Overflow Scenario: Heap-based buffer overflow allows for

文档评论(0)

1亿VIP精品文档

相关文档