Abstract

In this talk, we will understand the concept of Uninitialized Variable and it's exploitation in Windows Kernel. We will see the demo exploit for Uninitialized Stack Variable vulnerability which achieves SYSTEM privileges after successful exploitation.

Speaker

Ashfaq Ansari

Ashfaq Ansari is the founder of HackSys Team code named "Panthera". He is a Security Researcher with experience in various aspects of Information Security. He has authored "HackSys Extreme Vulnerable Driver" and "Shellcode of Death". He has also written and published various whitepapers on low level software exploitation. His core interest lies in "Low Level Exploitation", "Reverse Engineering", "Program Analysis" and "Hybrid Fuzzing". He is a fanboy of Artificial Intelligence and Machine Learning. He is the chapter lead for null (Pune).

Timing

Starts at Saturday June 11 2016, 11:00 AM. The sessions runs for 40 minutes.

Resources