Introduction to MHE

Introduction to MHE

Operating systems have considerably hardened stack memory corruption vectors to a point that finding stack vulnerabilities in modern software packages is very unlikely. Take your penetration testing engagements to the next level by harnessing the often unexplored advantages of heap exploitation. In this talk you will learn the following game-changing skills that will help you identify otherwise obscure attack vectors: Understand high-level Linux dynamic memory allocation concepts. Develop the intuition to identify exploitation opportunities in the way developers manage dynamic memory. Pro-tips for setting a debugging/research lab. Save time by evading rabbit-holes and complexities of studying heap exploitation. Speaker: Huáscar Tejeda is the Co-Founder & CEO of F2TC Cyber Security, Contributing author of SEC760 and SANS 2020 Summit Steering Committee member. He is a seasoned cybersecurity professional, thoroughly experienced with more than 20 years with notable achievements in IT and Telecommunications, developing carrier grade security solutions and business critical components for multiple broadband providers. Highly skilled in Security Research, Penetration Testing, Linux Kernel Hacking, Software Development and Embedded Hardware Design. In his spare time, Huáscar enjoys technical scuba diving and playing guitar. Language: English (first minutes in Portuguese) Grupo da GoHacking no Telegram: https://t.me/joinchat/RmtfQNuLjtXdqsOV  Let's GoHacking ! https://gohacking.com.br/