Hacker Techniques Introduction to Buffer Overflows

  Рет қаралды 12,648

Off By One Security

Off By One Security

Күн бұрын

Пікірлер: 44
@unknownboi9084
@unknownboi9084 5 ай бұрын
Truly one of the most legendary hacker youtubers out there. 🗿🗿🗿🗿🗿🗿🗿
@OffByOneSecurity
@OffByOneSecurity 2 жыл бұрын
If you have ideas for future videos, let me know...
@NetworkITguy
@NetworkITguy 2 жыл бұрын
I want to say a lot of content creators see requests for easier content and don't see the ROI for advanced content. Personally would like to see you do whatever it is you want to provide. Given your coverage that isn't too say this wasn't a contribution. - GamozoLabs does a fantastic job of covering fuzzing and optimization research - 0xdf covers advent of code and, like ippsec, does war game boxes on THM, HTB etc. - cts covers memeing coding projects like educational software for skirting around Valve's anti-cheat. - 0x6d696368 ghidra - DuMp-GuY TrIcKsTeR .NET RE - OALabs Malware RE - 247CTF Learned RE - GH Learned RE & tooling - HackerSploit guided general coverage of tools - Dayzerosec application security / vuln research and recaps and so on... What I see that's missing is coverage of more modern exploitation identification and understanding in-depth, like HVCI for example, on KZbin. Even though there are great research articles by revers.engineering and secret.club sometimes having a visual representation helps. Which is why this channel is so awesome. I recognize that most of the bleeding edge research regarding COOP for Intel's CET or smashing ARM's MTE is reserved for talks or paid trainings. Plus you're first video had Didier Stevens on and that was awesome.
@OffByOneSecurity
@OffByOneSecurity 2 жыл бұрын
@@NetworkITguy Yes, there is a ton of amazing stuff out there! I hope to cover things that have sometimes already been covered, but in a way that makes it more accessible. I have several goals, which also includes what you've suggested above. All the examples you've listed are fantastic. So, one example is to cover some of those same topics, but to try and do an even better (or different style) job when possible. I also want to cover topics that haven't been addressed, such as bringing on Steve Walbroehl recently to cover blockchain tech and things that aren't commonly discussed. Finally, I want to reach the areas you've suggested. I plan to have a coauthor of mine from Gray Hat Hacking on to discuss Hypervisor Exploitation. I plan to have Connor McGarr on to cover some of the Kernel stuff you mention. We'll see who else wants to come on to discuss some other relative areas that you describe. As you said, it gets into a cutting edge space of research where people are potentially under NDA's, or are using it for private trainings, or are keeping it internal as it's super valuable. For example, Apple has recently made things a lot harder with regard to exploitation. If someone finds something, the price tag could reach several million USD. Thanks for checking in and I hope you like the content we bring in the future!
@OffByOneSecurity
@OffByOneSecurity 2 жыл бұрын
Oh, and if you have something you'd like to share, I'm happy to chat about having you on as a guest!
@mesh3al32
@mesh3al32 2 жыл бұрын
- set up Chrome v8 engine for vuln research - basic exploitation of v8 in an easy way (other writeups are tough to understand and not easily accessible) - explain Windows mitigations and how to circumvent even theoretically such as (CFG, ACG, Exploit Guard, XFG, CFi, CET, SMEP, hypervisor security HVCI and VBS .. )
@kevin0x90
@kevin0x90 2 жыл бұрын
Idea for a video: Practical WinDbg (Preview?) for Vulnerability Research and Exploit Development. E.g. triaging crashes, debugging exploits
@thetruetom9104
@thetruetom9104 Жыл бұрын
thank you for explaining it in details, most youtube videos don't do that, thank you!!!
@OffByOneSecurity
@OffByOneSecurity Жыл бұрын
I'm glad it helped. I try and make sure the videos on my channel are informative.
@godzab
@godzab 2 жыл бұрын
I wish this came out a year ago when I was studying for certs that required BoF. This is a great video and thank you for recording it!
@OffByOneSecurity
@OffByOneSecurity 2 жыл бұрын
Exactly, it's great to save people time so they can get to new research. People have heard me say it a million times, about references to FS:[0x30] back when I was learning about shellcode writing. This was 20 years ago and there were no search engine results. Had there been, I'd have saved many hours!
@Siik94Skillz
@Siik94Skillz 5 ай бұрын
that was great! Learned a bunch for sure. The end part went a bit quick. But I'll come back to this as I am learning! Great stuff
@mesh3al32
@mesh3al32 2 жыл бұрын
one of the best buffer overflow video!
@dmk1577
@dmk1577 2 жыл бұрын
Such an awesome video looking forward to future content
@MuhammedUsman-r2j
@MuhammedUsman-r2j 4 ай бұрын
LOVED it, loved the way u explained and drew to help us visualize. I learned a lot and also got to revise some of stack concepts. please keep making more videos like this. (i have a red teaming ctf coming up, i am preparing for it). and also, could you make a playlist for beginners like myself to refer to to get all the videos related to buffer overflow.
@OffByOneSecurity
@OffByOneSecurity 3 ай бұрын
Thanks, I try to mostly touch on more advanced topics as there are a lot of videos on introductory exploit development available. I can certainly try to do some others if you find my style more helpful. Most videos are on the Live section of the channel.
@ketchupflavors6328
@ketchupflavors6328 2 жыл бұрын
It was a delight to watch this one Stephen!. Such a great explanation of the basics. Other content creators skip the details. Thank you very much for sharing your knowledge and giving a detailed walk through with diagrams. This channel's gonna grow exponentially. I am sure of it. Cheers!
@uaman11
@uaman11 11 ай бұрын
dont apologize for the graphics its perfect you dont need anything flashy its just distracting anyway
@anastasedukundabera-de3oi
@anastasedukundabera-de3oi 5 ай бұрын
Thank you so much Stephen! I'm coming from Pharmacy and I want more of your help into Android hacking!
@Icen-s4x
@Icen-s4x 12 күн бұрын
thank you so much man, loved it, very helpful✨✨✨
@melonscratcher
@melonscratcher Жыл бұрын
Subscribed !!! Great granular details, feel like I learned something.... Cheers!
@OffByOneSecurity
@OffByOneSecurity Жыл бұрын
If you didn't learn anything, I'm failing! :) Happy New Year.
@yandee4275
@yandee4275 Жыл бұрын
Awesome content. Followed your GXPEN course btw. Here for a refresher ;)
@AhmedWantsToKnowUrLocation
@AhmedWantsToKnowUrLocation 5 ай бұрын
very good, enjoyed the whole video!
@0xSingularity
@0xSingularity Жыл бұрын
Amazing video, love the way you deliver the content. I’m assuming it comes from your experience in developing and teaching SANS courses! Subbed and looking forward to more videos in the future!
@yrncollo
@yrncollo Жыл бұрын
Great content ;)
@OffByOneSecurity
@OffByOneSecurity Жыл бұрын
Thanks!
@MoveTrueRecords_
@MoveTrueRecords_ Ай бұрын
❤ New Sub
@OffByOneSecurity
@OffByOneSecurity 23 күн бұрын
Thanks!
@morganguesdon2202
@morganguesdon2202 2 жыл бұрын
just awesome
@kevinburke2446
@kevinburke2446 2 жыл бұрын
Hope your channel blows up man
@OffByOneSecurity
@OffByOneSecurity 2 жыл бұрын
Thanks!
@mohamedwaellabidi1850
@mohamedwaellabidi1850 2 ай бұрын
Thank you ❤❤❤
@dukedadson774
@dukedadson774 2 жыл бұрын
where have you been all this while..bro ..damn u good
@OffByOneSecurity
@OffByOneSecurity 2 жыл бұрын
Thanks!
@wingwing2683
@wingwing2683 8 ай бұрын
Thank you very much!
@JoaquinRamirez
@JoaquinRamirez 2 жыл бұрын
Running a Buffer Overflow Attack - Computerphile
17:30
Computerphile
Рет қаралды 2 МЛН
Breaking into Hacking as a Career!
1:36:09
Off By One Security
Рет қаралды 5 М.
It’s all not real
00:15
V.A. show / Магика
Рет қаралды 13 МЛН
Chain Game Strong ⛓️
00:21
Anwar Jibawi
Рет қаралды 29 МЛН
Чистка воды совком от денег
00:32
FD Vasya
Рет қаралды 6 МЛН
Buffer Overflow Hacking Tutorial (Bypass Passwords)
55:39
David Bombal
Рет қаралды 78 М.
How a Microcontroller starts
28:49
Artful Bytes
Рет қаралды 57 М.
Introduction to Reverse Engineering and Debugging
2:03:51
Off By One Security
Рет қаралды 8 М.
First Exploit! Buffer Overflow with Shellcode - bin 0x0E
12:23
LiveOverflow
Рет қаралды 275 М.
How They Hack: Buffer Overflow & GDB Analysis - James Lyne
16:06
WHY IS THE STACK SO FAST?
13:46
Core Dumped
Рет қаралды 179 М.
HACKED!  How a Buffer Overflow Exploit works, plus Code Red!
25:50
Dave's Garage
Рет қаралды 197 М.
Exploiting Off By One Vulnerabilities
1:35:22
Off By One Security
Рет қаралды 2,1 М.
how do hackers exploit buffers that are too small?
8:25
Low Level
Рет қаралды 204 М.
DEF CON 32 - The Darkest Side of Bug Bounty - Jason Haddix
32:30
DEFCONConference
Рет қаралды 50 М.
It’s all not real
00:15
V.A. show / Магика
Рет қаралды 13 МЛН