Home | Amazing | Today | Tags | Publishers | Years | Account | Search 
A Bug Hunter's Diary: A Guided Tour Through the Wilds of Software Security

Buy
Welcome to A Bug Hunter’s Diary. This book describes the life cycles of seven interesting, real-life software security vulnerabilities I found over the past several years. Each chapter focuses on one bug. I’ll explain how I found the bug, the steps I took to exploit it, and how the vendor eventually patched it.

Seemingly simple bugs can have drastic consequences, allowing attackers to compromise systems, escalate local privileges, and otherwise wreak havoc on a system.

A Bug Hunter's Diary follows security expert Tobias Klein as he tracks down and exploits bugs in some of the world's most popular software, like Apple's iOS, the VLC media player, web browsers, and even the Mac OS X kernel. In this one-of-a-kind account, you'll see how the developers responsible for these flaws patched the bugs—or failed to respond at all. As you follow Klein on his journey, you'll gain deep technical knowledge and insight into how hackers approach difficult problems and experience the true joys (and frustrations) of bug hunting.

Along the way you'll learn how to:

  • Use field-tested techniques to find bugs, like identifying and tracing user input data and reverse engineering
  • Exploit vulnerabilities like NULL pointer dereferences, buffer overflows, and type conversion flaws
  • Develop proof of concept code that verifies the security flaw
  • Report bugs to vendors or third party brokers

A Bug Hunter's Diary is packed with real-world examples of vulnerable code and the custom programs used to find and test bugs. Whether you're hunting bugs for fun, for profit, or to make the world a safer place, you'll learn valuable new skills by looking over the shoulder of a professional bug hunter in action.

(HTML tags aren't allowed.)

Aperture 3 Portable Genius
Aperture 3 Portable Genius

Get the latest tips, facts, and secrets that help you make the most of Aperture 3

Aperture offers a full range of tools to help serious photographers organize and manipulate images and manage workflow. This little guide is packed with hip tips, secrets, and shortcuts that help you get even more functionality from the...

Machine Learning with Microsoft Technologies: Selecting the Right Architecture and Tools for Your Project
Machine Learning with Microsoft Technologies: Selecting the Right Architecture and Tools for Your Project

Know how to do machine learning with Microsoft technologies. This book teaches you to do predictive, descriptive, and prescriptive analyses with Microsoft Power BI, Azure Data Lake, SQL Server, Stream Analytics, Azure Databricks, HD Insight, and more.

The ability to analyze massive amounts of real-time data and predict...

Linux Appliance Design: A Hands-On Guide to Building Linux Appliances
Linux Appliance Design: A Hands-On Guide to Building Linux Appliances
Linux appliances are computers that serve a single, well-defined purpose. Modern appliances are complex machines, with processors, operating systems, and application software. For example, the Tivo is essentially a Linux-based computer with a single purpose: recording television. While there are books that tell readers how to run Linux on embedded...

Adaptive Techniques for Dynamic Processor Optimization: Theory and Practice (Integrated Circuits and Systems)
Adaptive Techniques for Dynamic Processor Optimization: Theory and Practice (Integrated Circuits and Systems)
This book is about various adaptive and dynamic techniques used to optimize processor power and performance.  It is based on a very successful forum at ISSCC which focused on Adaptive Techniques.  Most high performance processors and embedded processors use adaptive techniques to overcome process variation, temperature, and termal...
An Introduction to the Mathematics of Finance, Second Edition: A Deterministic Approach
An Introduction to the Mathematics of Finance, Second Edition: A Deterministic Approach

An Introduction to the Mathematics of Finance: A Deterministic Approach, 2e, offers a highly illustrated introduction to mathematical finance, with a special emphasis on interest rates. This revision of the McCutcheon-Scott classic follows the core subjects covered by the first professional exam required of UK actuaries,...

Advances in Swarm Intelligence: First International Conference, ICSI 2010, Beijing
Advances in Swarm Intelligence: First International Conference, ICSI 2010, Beijing

This book and its companion volume, LNCS vols. 6145 and 6146, constitute the proceedings of the International Conference on Swarm Intelligence (ICSI 2010) held in Beijing, the capital of China, during June 12-15, 2010. ICSI 2010 was the first gathering in the world for researchers working on all aspects of swarm intelligence, and...

©2019 LearnIT (support@pdfchm.net) - Privacy Policy