Stack Based Buffer Overflow Tutorial 1

Loading...

Sign in or sign up now!
Alert icon
Upgrade to the latest Flash Player for improved playback performance. Upgrade now or more info.
13,575
Loading...
Alert icon
Sign in or sign up now!
Alert icon

Uploaded by on Apr 12, 2010

This is the first video tutorial in the buffer overflow series...

This is very simple and almost will never be found this easy in real life situations however, the concept is good to grasp to advance onto further techniques which will enable you to exploit more complex programs in no time at all...!

you should have an understanding of C programming lanugage and assembly language and how the stack is laid out and little endian systems...

Link to this comment:

Share to:

Uploader Comments (sig111immense)

  • how do you calculate the address "0xbfff2dc"?

  • @king5201 what do you mean by calculate? and if you mean the part where your subtracting the NOP bits, then putting it in little endian is the way.. \xdc\xf2\xff\xbf

  • will you decipher the ...::: OnyxCode :::...

  • @OnyxCode check ur profile

  • For anyone wondering, what he did at the end was set the suid bit. Basically, when the program runs, it normally runs as the owner of the file (in this case root but not always). This is common for programs such as passwd (to change your password). The passwd program edits /etc/passwd even when run by a normal user. On the other hand, if this program was a network program, you could use something similar to connect via the network to get a shell as the user who is running the program.

  • @wolfricacc thanks for that :) a good explanation for those who were curious :)

see all

All Comments (32)

Sign In or Sign Up now to post a comment!
  • sorry bro but you need to actually talk over the video instead of having gay ass music lol

    its more educational that way

  • I can't help but notice you started as root... Could you do the same thing as a lower-level user?

  • nice.. now a viedo about fuzzing... and we're all set, eh? ;)

  • @NoShit12 no sure i'm not even the uploader. sig111immense is

Loading...

Alert icon
0 / 00Unsaved Playlist Return to active list
    1. Your queue is empty. Add videos to your queue using this button:
      or sign in to load a different list.
    Loading...Loading...Saving...
    • Clear all videos from this list
    • Learn more