filmov
tv
OWASP Ottawa February 2020: OSCP Guide to Buffer Overflow/Exploring File Upload Vulnerabilities
Показать описание
OSCP guide to Buffer Overflow (Brainpan writeup)
Abstract:
A step by step explanation of exploiting Buffer Overflow on Brainpan VM from Vulnhub.
Andriy Zelenyuk:
Andriy is a Certified Ethical Hacker, Software Tester with 7 years of experience in QA / Test Automation. He is working his way towards an OSCP cert.
Exploring File Upload Vulnerabilities
Abstract:
If you develop a website that allows users to upload files, there are a number of vulnerabilities that you need to watch out for. This talk will walk through a number of file upload vulnerabilities, from malware and executable file types, to denial of service - and what steps you can take to mitigate the risk like rules, permissions and logging.
Ben Whitney:
Ben is an experienced software developer who has been bringing new products, software engines, and architectures from the early concept stages through the requirements, design and development in a number of senior roles. He has almost 20 years of professional software development experience enabling him to enjoy tackling the tough problems.
Abstract:
A step by step explanation of exploiting Buffer Overflow on Brainpan VM from Vulnhub.
Andriy Zelenyuk:
Andriy is a Certified Ethical Hacker, Software Tester with 7 years of experience in QA / Test Automation. He is working his way towards an OSCP cert.
Exploring File Upload Vulnerabilities
Abstract:
If you develop a website that allows users to upload files, there are a number of vulnerabilities that you need to watch out for. This talk will walk through a number of file upload vulnerabilities, from malware and executable file types, to denial of service - and what steps you can take to mitigate the risk like rules, permissions and logging.
Ben Whitney:
Ben is an experienced software developer who has been bringing new products, software engines, and architectures from the early concept stages through the requirements, design and development in a number of senior roles. He has almost 20 years of professional software development experience enabling him to enjoy tackling the tough problems.