Finding Vulnerabilities in iOS - MacOS Networking Code
Hack In The Box Security Conference via YouTube
Overview
Syllabus
Introduction
Story of 3 bugs
Extra topics
PacketMangal bug
Finding security vulnerabilities
Query Language QL
TCPIP Packet Structure
TCP Options
Raw Socket Programming
The Fix
The struct
Whats an nbar
Whats an EM buff
Stack Buffer Overflow
Infinite Loop Bug
NFS Mount
M buff copy
Macros
Fake NFS Server
Eve 999
Packet Mangler
Source and Sink
Query Results
Query Explanation
Conclusion
Taught by
Hack In The Box Security Conference