Home | Amazing | Today | Tags | Publishers | Years | Account | Search 
A Bug Hunter's Diary: A Guided Tour Through the Wilds of Software Security

Buy
Welcome to A Bug Hunter’s Diary. This book describes the life cycles of seven interesting, real-life software security vulnerabilities I found over the past several years. Each chapter focuses on one bug. I’ll explain how I found the bug, the steps I took to exploit it, and how the vendor eventually patched it.

Seemingly simple bugs can have drastic consequences, allowing attackers to compromise systems, escalate local privileges, and otherwise wreak havoc on a system.

A Bug Hunter's Diary follows security expert Tobias Klein as he tracks down and exploits bugs in some of the world's most popular software, like Apple's iOS, the VLC media player, web browsers, and even the Mac OS X kernel. In this one-of-a-kind account, you'll see how the developers responsible for these flaws patched the bugs—or failed to respond at all. As you follow Klein on his journey, you'll gain deep technical knowledge and insight into how hackers approach difficult problems and experience the true joys (and frustrations) of bug hunting.

Along the way you'll learn how to:

  • Use field-tested techniques to find bugs, like identifying and tracing user input data and reverse engineering
  • Exploit vulnerabilities like NULL pointer dereferences, buffer overflows, and type conversion flaws
  • Develop proof of concept code that verifies the security flaw
  • Report bugs to vendors or third party brokers

A Bug Hunter's Diary is packed with real-world examples of vulnerable code and the custom programs used to find and test bugs. Whether you're hunting bugs for fun, for profit, or to make the world a safer place, you'll learn valuable new skills by looking over the shoulder of a professional bug hunter in action.

(HTML tags aren't allowed.)

Java Programming (Introduction to Programming)
Java Programming (Introduction to Programming)

JAVA PROGRAMMING, Sixth Edition provides the beginning programmer with a guide to developing applications using the Java programming language. Java is popular among professional programmers because it can be used to build visually interesting GUI and Web-based applications. Java also provides an excellent environment for the beginning...

A Handbook of Software and Systems Engineering: Empirical Observations, Laws, and Theories
A Handbook of Software and Systems Engineering: Empirical Observations, Laws, and Theories
Computers are the most pervasive tools of modern society. Their deployment relies on advanced methods of software and systems engineering. Based on repeated and consistent observations, key lessons of these fields can now be formulated into rules or even laws, providing initial building blocks towards a theoretical foundation that is essential for...
Digital Television, Third Edition: Satellite, Cable, Terrestrial, IPTV, Mobile TV in the DVB Framework
Digital Television, Third Edition: Satellite, Cable, Terrestrial, IPTV, Mobile TV in the DVB Framework
Digital Television is as an authoritative and complete overview that describes the technology of digital television broadcasting. It gives you a thorough technical description of the underlying principles of the DVB standard and the various steps of signal processing. Also included is a complete technical glossary of terms, abbreviations, and...

DB2(R) Universal Database V8 Handbook for Windows, UNIX, and Linux
DB2(R) Universal Database V8 Handbook for Windows, UNIX, and Linux
IBM DB2 Universal Database V8 offers breakthrough availability, manageability, performance, and scalability. Now, straight from IBM, there's a start-to-finish guide to DB2 Universal Database V8 administration and development for UNIX, Linux, and Windows.

This definitive reference covers every aspect of deploying and managing DB2 Universal...

Nonlinear Digital Filters: Analysis and Applications
Nonlinear Digital Filters: Analysis and Applications
This book provides an easy to understand overview of nonlinear behavior in digital filters, showing how it can be utilized or avoided when operating nonlinear digital filters. It gives techniques for analyzing discrete-time systems with discontinuous linearity, enabling the analysis of other nonlinear discrete-time systems, such as sigma delta...
PostgreSQL Replication
PostgreSQL Replication

PostgreSQL offers a comprehensive set of replication related features, which can be used to make your database servers more robust and way more scalable. Unleashing the power of PostgreSQL provides the user with countless opportunities and a competitive advantage over other database systems. To make things more powerful, PostgreSQL can be...

©2021 LearnIT (support@pdfchm.net) - Privacy Policy