Free Workshop - Introduction to Linux 64-bit Binary Exploitation w/ superkojiman
Details
The workshop will cover the following:
- Quick introduction to Intel x86 Assembly
- Old school stack smashing
- Finding vulnerabilities
- Shellcode
- Exploitation
- Preventing stack overflow attacks
- Tools we'll use include gdb, pwndbg, pwntools, and IDA Pro
Pre-requisites: - Some basic knowledge of C and Python
This will be a hands on workshop:
- Bring a laptop capable of running VMware or VirtualBox
- Bring your own power cable and power bar
- Install a copy of IDA Pro 7 Freeware on your host OS: https://www.hex-rays.com/products/ida/support/download_freeware.shtml
- Have a SSH client on your host OS to SSH into the VM
Here are two links for Linux virtual machine and supplementary data. Please be sure you've got the Linux VM imported and working before coming to the workshop. The password is dc416
- MEGA: https://mega.nz/#F!J5ZlmQKY!p5QkbS1H9pd-OwsxrsWHdQ
- Mediafire: https://www.mediafire.com/folder/ulvgo1judpn81/dc416-exploitdev
Keep an eye on the Meetup page or DefconToronto Slack #workshop channel for updates!
Instructor:
Harold Rodriguez (@superkojiman) works as a systems administrator at the University of Toronto. During his spare time he participates in Capture the Flag competitions with a focus on binary exploitation and reverse engineering challenges. He's contributed challenges to vulnhub.com and exploits to exploit-db.com. He's the proud owner of the OSCP and OSCE; the only two CTFs he's ever paid to play.
Important to know
- Please review code of conduct here: https://dc416.com/faq/
