Quantcast
Channel: BOT24
Viewing all articles
Browse latest Browse all 8064

Bypassing Windows ASLR using “skype4COM” protocol handler

$
0
0
While investigating an unrelated issue using SysInternals Autoruns tool I spotted a couple of protocol handlers installed on the system by Skype. Knowing that protocol handlers can be loaded by Internet Explorer without any prompts I decided to check if these libraries have there dynamic base bits set. It turns out that the “skype4com.dll” library has not which means it could be used to bypass Windows ASLR so I got to work writing my rop chain and testing it out.

read more........http://www.greyhathacker.net/?p=641

Viewing all articles
Browse latest Browse all 8064

Trending Articles