05.11.2016 Views

ATTACKING WINDOWS BY WINDOWS

eu-16-Liang-Attacking-Windows-By-Windows

eu-16-Liang-Attacking-Windows-By-Windows

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

My Exploit<br />

1Create memory font<br />

2Create two threads<br />

3Do race condition job<br />

4Overflow<br />

5and dword ptr [r15], 0FFFFFFFBh<br />

• Hex: 0xFFFFFFFB<br />

• Bin: 1111 …… 1111 1011<br />

Pos 31 7 3 2 1 0

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!