Warehouse Stock Clearance Sale

Grab a bargain today!


Sign Up for Fishpond's Best Deals Delivered to You Every Day
Go
A Guide to Kernel ­Exploitation
Attacking the Core
By Perla, Enrico (Kernel Programmer, Oracle), Oldani, Massimiliano (Security Consultant, Emaze Networks)

Rating
51 Ratings by Goodreads
Already own it? Write a review
Format
Paperback, 464 pages
Published
United States, 1 September 2010

A Guide to Kernel Exploitation: Attacking the Core discusses the theoretical techniques and approaches needed to develop reliable and effective kernel-level exploits, and applies them to different operating systems, namely, UNIX derivatives, Mac OS X, and Windows. Concepts and tactics are presented categorically so that even when a specifically detailed vulnerability has been patched, the foundational information provided will help hackers in writing a newer, better attack; or help pen testers, auditors, and the like develop a more concrete design and defensive structure. The book is organized into four parts. Part I introduces the kernel and sets out the theoretical basis on which to build the rest of the book. Part II focuses on different operating systems and describes exploits for them that target various bug classes. Part III on remote kernel exploitation analyzes the effects of the remote scenario and presents new techniques to target remote issues. It includes a step-by-step analysis of the development of a reliable, one-shot, remote exploit for a real vulnerabilitya bug affecting the SCTP subsystem found in the Linux kernel. Finally, Part IV wraps up the analysis on kernel exploitation and looks at what the future may hold. * Covers a range of operating system families - UNIX derivatives, Mac OS X, Windows* Details common scenarios such as generic memory corruption (stack overflow, heap overflow, etc.) issues, logical bugs and race conditions* Delivers the reader from user-land exploitation to the world of kernel-land (OS) exploits/attacks, with a particular focus on the steps that lead to the creation of successful techniques, in order to give to the reader something more than just a set of tricks

Show more

Our Price
HK$357
Elsewhere
HK$401.58
Save HK$44.58 (11%)
Ships from Australia Estimated delivery date: 26th May - 3rd Jun from Australia
Free Shipping Worldwide

Buy Together
+
Buy together with Malware Forensics Field Guide for Windows Systems at a great price!
Buy Together
HK$725
Elsewhere Price
HK$798.75
You Save HK$73.75 (9%)

Product Description

A Guide to Kernel Exploitation: Attacking the Core discusses the theoretical techniques and approaches needed to develop reliable and effective kernel-level exploits, and applies them to different operating systems, namely, UNIX derivatives, Mac OS X, and Windows. Concepts and tactics are presented categorically so that even when a specifically detailed vulnerability has been patched, the foundational information provided will help hackers in writing a newer, better attack; or help pen testers, auditors, and the like develop a more concrete design and defensive structure. The book is organized into four parts. Part I introduces the kernel and sets out the theoretical basis on which to build the rest of the book. Part II focuses on different operating systems and describes exploits for them that target various bug classes. Part III on remote kernel exploitation analyzes the effects of the remote scenario and presents new techniques to target remote issues. It includes a step-by-step analysis of the development of a reliable, one-shot, remote exploit for a real vulnerabilitya bug affecting the SCTP subsystem found in the Linux kernel. Finally, Part IV wraps up the analysis on kernel exploitation and looks at what the future may hold. * Covers a range of operating system families - UNIX derivatives, Mac OS X, Windows* Details common scenarios such as generic memory corruption (stack overflow, heap overflow, etc.) issues, logical bugs and race conditions* Delivers the reader from user-land exploitation to the world of kernel-land (OS) exploits/attacks, with a particular focus on the steps that lead to the creation of successful techniques, in order to give to the reader something more than just a set of tricks

Show more
Product Details
EAN
9781597494861
ISBN
1597494860
Other Information
Illustrated
Dimensions
23.1 x 18.8 x 2.8 centimeters (0.80 kg)

Promotional Information

Learn how kernel exploits expose operating system vulnerabilities and give the attacker complete control!

Table of Contents

Part I: A Journey to Kernel-Land
1. From User-Land to Kernel-Land Attacks
2. A Taxonomy of Kernel Vulnerabilities
3. Stairway to Successful Kernel Exploitation

Part II: The UNIX Family, Mac OS X, and Windows
4. The UNIX Family
5. Mac OS X
6. Windows

Part III: Remote Kernel Exploitation
7. Facing the Challenges of Remote Kernel Exploitation
8. Putting It All Together: A Linux Case Study

Part IV: Final Words
9. Kernel Evolution: Future Forms of Attack and Defense

About the Author

Enrico Perla currently works as a kernel programmer at Oracle. He received his B.Sc. in Computer Science from the University of Torino, and his M.Sc. in Computer Science from Trinity College Dublin. His interests range from low-level system programming to low-level system attacking, exploiting, and exploit countermeasures. Massimiliano Oldani currently works as a Security Consultant at Emaze Networks. His main research topics include operating system security and kernel vulnerabilities.

Reviews

"A very interesting book that not only exposes readers to kernel exploitation techniques, but also deeply motivates the study of operating systems internals, moving such study far beyond simple curiosity."--Golden G. Richard III, Ph.D., Professor of Computer Science, University of New Orleans and CTO, Digital Forensics Solutions, LLC

Show more
Review this Product
Ask a Question About this Product More...
 
Item ships from and is sold by Fishpond Retail Limited.

Back to top