吾爱破解 - 52pojie.cn

 找回密码
 注册[Register]

QQ登录

只需一步,快速开始

查看: 7690|回复: 6
收起左侧

[漏洞分析] 【翻译】Offensive Security Exploit Weekend 赛题详解

[复制链接]
riusksk 发表于 2011-4-12 20:53
作者:Sud0
译者:riusksk(泉哥:http://riusksk.blogbus.com


前言
笔者Sud0Corelan安全组织成员(http://www.corelan.be:8800/index.php/security/corelan-team-members/),刚赢得Offensive Security Exploit weekendhttp://www.offensive-security.com/offsec/exploit-weekend/)大赛冠军,这是一场由Offensive Security举办的exploit编写大赛。这项挑战赛以存在漏洞的Foxit Reader软件为目标,每一参赛者都会先得到一份Proofof Concept exploithttps://www.exploit-db.com/exploits/15514),并已明确指出这是个溢出漏洞,可通过控制结构化异常处理记录(structured exception handling record)来获得权限。下面是Offensive Security在其官方博客上公布的信息:
Aloha Offsec students! You’ve been slapped around byBob, abused by Nicky and crushed by NNM. Just as you thought it was over,Offensive Security now comes up with a brand new type of pain. This one is forall you hardcore exploit developers out there, who want a real challenge – anOffsec “Exploit Weekend”.
This is the deal:We provide you with a proof of concept, with EIP handed to you on a goldenplatter. All you need to do is get a shell….muhahaha. The event will take placenext weekend, 13th-14th of November and is open to Offsec alumni only. Thefirst person to send in a working POC with a bindshell payload on port 4444wins a 32 GB WiFi Ipad!
For more information, check out the OffsecStudent forms. If you haven’t signed up for the 1day club forums, send inan email to our orders dept. with your OSID!

具体内容参见附件……

Offensive Security Exploit Weekend 赛题详解.part1.rar

1.43 MB, 下载次数: 16, 下载积分: 吾爱币 -1 CB

Offensive Security Exploit Weekend 赛题详解.part2.rar

1.13 MB, 下载次数: 14, 下载积分: 吾爱币 -1 CB

发帖前要善用论坛搜索功能,那里可能会有你要找的答案或者已经有人发布过相同内容了,请勿重复发帖。

Hmily 发表于 2011-4-14 13:05
谢谢riusksk兄弟分享,下载学习.
zhuliang 发表于 2011-4-17 12:54
jk影 发表于 2011-7-2 14:11
banghui8 发表于 2011-7-14 19:20
这肯定是好东西的。我保证
web978 发表于 2011-9-25 00:33
看帖子的要发表下看法
头像被屏蔽
苏烟式 发表于 2014-7-21 16:53
提示: 作者被禁止或删除 内容自动屏蔽
您需要登录后才可以回帖 登录 | 注册[Register]

本版积分规则

返回列表

RSS订阅|小黑屋|处罚记录|联系我们|吾爱破解 - LCG - LSG ( 京ICP备16042023号 | 京公网安备 11010502030087号 )

GMT+8, 2024-12-22 10:53

Powered by Discuz!

Copyright © 2001-2020, Tencent Cloud.

快速回复 返回顶部 返回列表