Alert icon
We're changing our privacy policy. This stuff matters.  Learn more  Dismiss

Exploit a stack overflow vulnerability.

Loading...

Sign in or sign up now!
11,437
Loading...
Alert icon
Sign in or sign up now!
Alert icon

Uploaded by on Jun 20, 2008

This video is about a stack overflow vulnerability. We will program 2 programs, the first one will have a stack overflow vulnerability in it and the second one will take advantage of that to execute code that shouldn't otherwise be executed!

Category:

Howto & Style

Tags:

License:

Standard YouTube License

  • likes, 1 dislikes

Link to this comment:

Share to:

Uploader Comments (youhakim)

  • My mistake! I was thinking that people who watch this video are intelligent enough to understand that this is a simple demonstration of a buffer overflows and how it works!

  • What kind of harm overflows can make! I do not see that overflows can benefit the hacker to control over my algorithm, etc.

  • Well, the hacker can own your computer if he succeeded in exectuing code that expoits a buffer oveflow vulnerability in a particular software. Let's suppose you use Internet explorer to visit a web site, the website happens to host malicious code that exploits one of -a known or not- buffer overflows in IE, ... if this happens and it does a lot then you can imagine the harm!

    The video simplfy things because I used the exploit to execute internal code!

  • Hakim, your name is familiar to me, its been a long time u did not post something else, is any thing new coming up ?

  • Yeah, it's true that I didn't post anything since a long time, and I am sorry for that because I am busy all the time these days and I have no PC at home to record videos, ... I have only a laptop to do my work, you know ... the work that pays the bills :)

    Thanks meaculpa1 for your comment.

Top Comments

  • invisiblehero keep your negative comments to yourself. This dude has done a good job in posting some nice vids on assembly and others don't ruin that.

see all

All Comments (20)

Sign In or Sign Up now to post a comment!
  • Nicer job! So if program 1 was an OS or other essential component like IE, you could serve this to computer inside a commonly installed app, or commonly visited website. The error would occur, and you could change the system. This is a fun video, thanks for the tutorial! Seeing this done in assembly would have been nice too! Yay op codes!

  • nice video!

  • good

  • I was on cnn . com and a box popped up that said "Stack overflow at line: 0". What the hell is this?

  • i dont get it all, becuz of the acent, but great dude! thanks for sharing :D

  • @ProDiago Have a look at how an operating system behaves in a buffer overflow situation. Typically you would introduce code into memory then, through the use of buffer overflow, cause the processor to execute the code beginning at that particular adress in memory.

    In most cases, this is code that elevates your access priviliges on the system to that of an administrator. After that, it's christmas.

    Disclaimer: It is (probably) illegal to do it the way you are thinking of it right now.

  • You code in notepad?!

  • Hi

    In instances where you can cause similar overflows, how could you use this as an injection vector to insert commands to change the program?

    In your example, the ASCII for "C" appears, but how could this be adapted to exploit a system vulnerability with overflows?

    Thanks. Great videos too.

Loading...

0 / 00Unsaved Playlist Return to active list
    1. Your queue is empty. Add videos to your queue using this button:
      or sign in to load a different list.
    Loading...Loading...Saving...
    • Clear all videos from this list
    • Learn more