Пожалуйста, обратите внимание, что пользователь заблокирован
Воркшоп с VXCON 2024
Слайды:
https://zerodayengineering.com/research/slides/VXCON2024_Workshop.pdf
Видео
In this workshop, we will explore the v8 CVE-2022-4262 vulnerability as a case study to guide participants through a comprehensive workflow of attacking a JavaScript engine. We’ll cover everything from setting up the research platform and analyzing the security patch to conducting a root cause analysis of the bug and developing an exploit. The complexity of this vulnerability and its exploitation technique ensures a rich learning experience, moving beyond superficial understanding associated with more common bugs.
While this workshop will be challenging, participants with prior experience in exploit development and/or JavaScript engines will find it particularly rewarding. Due to time constraints, our focus will be on analytical examinations and guided walkthroughs rather than hands-on coding, making it accessible for beginners willing to embrace some intellectual rigor. Join us for a deep dive into the intricacies of JavaScript engine exploitation!
Слайды:
https://zerodayengineering.com/research/slides/VXCON2024_Workshop.pdf
Видео