Recopilación de documentación sobre Exploiting
#Papers
"Introducción a la Explotación en Software Linux" por
overflowedminds:
[#]
"ASM /Shellcoding Series 1: Local Linux x86 Shellcoding without any high-level language" por
overflowedminds:
[#]
"ASM / Shellcoding Series 2: Local Linux x86 Shellcoding without any high-level language" por
overflowedminds:
[#]
"Format String Attack" :
[#]
"Linux Exploit Writing tutorial" por
Sickness416 (Inglés):
-1 Linux exploit writing tutorial part 1 - Stack overflow:
[#]
-2 Linux exploit writing tutorial part 2 - Stack Overflow ASLR bypass using ret2reg:
[#]
-3 Linux exploit development part 3 - ret2libc:
[#]
-4a Linux exploit development part 3 (rev 2) - Real app demo:
[#]
-4b Linux exploit development part 2 (rev 2) - Real app demo (part 2):
[#]
-5 Linux exploit development part 4 - ASCII armor bypass + return-to-plt:
[#]
"Exploit writing tutorial" por
Corelan Team (Inglés):
-Stack Based Overflows:
[#]
-Writing Buffer Overflow Exploits:
[#]
-Writing SEH Based Exploits A:
[#]
-Writing SEH Based Exploits B:
[#]
-From Exploit to Metasploit Basics:
[#]
-How debugger modules & plugins can speed up basic exploit development:
[#]
-Bypassing Stack Cookies, SafeSeh, SEHOP, HW DEP and ASLR:
[#]
-Unicode - from 0×00410041 to calc:
[#]
-Win32 Egg Hunting:
[#]
-Win32 Shellcoding:
[#]
-Chaining DEP with ROP:
[#]
"Exploits y Stack Overflows en Win$" una ejemplificación práctica bastante clara:
[#]
#Ebooks
Linux Kernel Crash Book:
[#]
Access Denied: Code Breakers Guide:
[#]
Recopilación de documentación por Shell-Storm (Inglés):
[#]
Tutoriales de
Infosecinstitute
-Stack Based Buffer Overflow 1º
[#]
-Stack Based Buffer Overflow 2º
[#]
-Stack Based Buffer Overflow 3º
[#]
-Introducción en Fuzzing (con SPIKE)
[#][##]
-Exploiting con Ollydbg:
[#]
-Fundamentos basicos de debugging para exploiting:
[#]
Este post se irá rellenando paulatinamente segun encuentre tutoriales o guias decentes :-)
pd: Por temas de copyright no linkeo mas eBooks, pero podeis echar un ojo en mi sección de
Docs