• Home
  • Blog
  • Forums
  • Meta
    • History
    • Lab Setup
    • Careers
    • Capture the Flag
    • Student Work
    • Resources
  • Topics
    • Introduction
    • Code Audits
    • Reverse Engineering
    • Fuzzing
    • Exploitation
    • Web Hacking
    • Operations
    • Readings
    • Exams
    • Final Project
  • Search

Application Security and Vulnerability Analysis

  • Home
  • Blog
  • Forums
  • Meta
    • History
    • Lab Setup
    • Careers
    • Capture the Flag
    • Student Work
    • Resources
  • Topics
    • Introduction
    • Code Audits
    • Reverse Engineering
    • Fuzzing
    • Exploitation
    • Web Hacking
    • Operations
    • Readings
    • Exams
    • Final Project
  • Search

Top
  • Home
  • Blog
  • Forums
  • Meta
    • History
    • Lab Setup
    • Careers
    • Capture the Flag
    • Student Work
    • Resources
  • Topics
    • Introduction
    • Code Audits
    • Reverse Engineering
    • Fuzzing
    • Exploitation
    • Web Hacking
    • Operations
    • Readings
    • Exams
    • Final Project
  • Search
Meta
  • Login
« Code Audits 102 | Main | Archive »

References

Code Audits

  • Jared DeMott - Source Code Auditing
  • Interview with Vinnie Liu from Microsoft BlueHat 8
  • Real-world Code Review with Vinnie Liu from Microsoft BlueHat 8

Vulnerability Classes

  • Shatter Attack, Wikipedia
  • Setuid Demystified, Hao Chen, David Wagner, Drew Dean
  • Java Deserialization Flaws and Oracle's Secure Coding Guidelines

Example Vulnerabilities

  • Spot the Vuln, Billy Rios and Brett Hardin
  • xorl %eax, %eax
  • A Collection of Examples of 64-bit Errors in Real Programs
Discussion | Share ArticleShare Article | PermalinkPermalink
Creative Commons License
This work is licensed under a Creative Commons License.