29.01.2013 Views

Pwn@Home An Attack Path to jailbreaking your home router

Pwn@Home An Attack Path to jailbreaking your home router

Pwn@Home An Attack Path to jailbreaking your home router

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Set-<strong>to</strong>p-box Router Firmware<br />

Code execution<br />

Flash Player exploitation<br />

Working exploit for Windows 7<br />

Can’t find flash binary for this specific version on the Internet<br />

Arbitrary read and write<br />

Multiple attempts <strong>to</strong> determine registers value when crash occurs<br />

Visual feedback: \xeb\xfe<br />

ROP payload <strong>to</strong> call mprotect() and eventually execute cus<strong>to</strong>m<br />

shellcode

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!