Recent posts

[Kernel Exploit Tech] Dirty Pipe

Dirty Pipe(CVE-2022-0847)์— ๋Œ€ํ•ด ํƒ๊ตฌํ•˜๊ณ , ์ด ์ทจ์•ฝ์ ์ด ์–ด๋–ป๊ฒŒ ํŒจ์น˜๋๋Š”์ง€ ์•Œ์•„๋ณด์ž

[Exploit Tech Analysis][Heap] Tcache Poisoning

glibc-2.27 ์ดํ›„๋กœ tcache์— ์ ์šฉ๋œ ๋ณดํ˜ธ๊ธฐ๋ฒ•๊ณผ ์šฐํšŒ๋ฐฉ๋ฒ•์„ ์•Œ์•„๋ณด์ž

[Exploit Tech Analysis][Heap] Unsafe Unlink / Safe Unlink

bin์—์„œ ์ผ์–ด๋‚˜๋Š” unlink์™€ ์ด๋ฅผ ์•…์šฉํ•œ ๊ณต๊ฒฉ ๊ธฐ๋ฒ•, mitigation๊ณผ ์šฐํšŒ ๋ฐฉ๋ฒ•์„ ์•Œ์•„๋ณด์ž