regreSSHion: RCE in OpenSSH's server, on glibc-based Linux systems explained

Поделиться
HTML-код
  • Опубликовано: 30 июл 2024
  • Recently the news of a high severity security risk, shocked the OpenSSH world. Researchers from Qualys Security Advisory showed a remote shell possibility using a double free attach on heap combined with other techniques including unlink & aa4bmo.
    In this video I'll try to go a bit deep into this attack and give you leads what to study next if you are interested while describing the technical aspects of this case.
    00:00 - CVE-2024-6387
    01:23 - Race Condition
    04:28 - a look at RegreSSion attack on malloc & free
    05:55 - Using Signals & free race condition for attacks
    11:00 - How the attack on OpenSSH works
    20:10 - aa4bmo attack
    22:46 - Why old debian first? No ASLR nor NX
    24:29 - Making things faster
    - OpenSSH change log: www.openssh.com/releasenotes....
    - Qualys Security Advisory: www.qualys.com/2024/07/01/cve...
    - Phrack 0x3d: phrack.org/issues/61/6.html#ar...
    - Delivering Signals for Fun and Profit: lcamtuf.coredump.cx/signals.txt
  • НаукаНаука

Комментарии • 25

  • @behradio
    @behradio 28 дней назад

    Amazing Explanation Jadi Jan, Thanks ❤

  • @rezadehghani6601
    @rezadehghani6601 21 день назад

    that's great jadi joon!

  • @k1tajfar714
    @k1tajfar714 28 дней назад

    Brilliant 🔥

  • @atajahangiri5861
    @atajahangiri5861 28 дней назад

    VERY very GOOD video

  • @mahmoodbayeshi
    @mahmoodbayeshi 22 дня назад

    Nice Explanation!

  • @ArshamKhandani
    @ArshamKhandani 28 дней назад +1

    very good jadi

  • @imansh6995
    @imansh6995 28 дней назад

    Great and informative

  • @xdlcheraghi
    @xdlcheraghi 14 часов назад

    thanks for your explanation Jadi I'm looking for you

  • @zCri
    @zCri 26 дней назад

    great video

  • @Hwmid95
    @Hwmid95 28 дней назад

    U r the best

  • @Sayejadidi3605
    @Sayejadidi3605 28 дней назад

    Nice

  • @emmang2010
    @emmang2010 9 дней назад

    Thank you

  • @pouriashahba_
    @pouriashahba_ 28 дней назад

    graet

  • @mohammadrezakarimi7265
    @mohammadrezakarimi7265 28 дней назад

  • @TaylorJidanso
    @TaylorJidanso 28 дней назад

    Afreen

  • @iilliya8
    @iilliya8 28 дней назад

    Thanks for make it easy to understand.👌
    One question out of context of video.!
    How do you work with that magic mouse !! I know the gestures are useful and it's like a mouse and touchpad mixed together but really are your fingers ok 🥲 ???
    Every time I tried to use it my hand scream at me 😅
    How do you deal with charging ???🙃

    • @geekingjadi
      @geekingjadi  28 дней назад +1

      My fingers are [still] ok.. but the design of this thing is BAD.

    • @iilliya8
      @iilliya8 28 дней назад

      @@geekingjadi yeah I agree ! A great functionality tool but BAD design 😵‍💫 !!
      Do some exercises every 10 min or so to keep your fingers healthy, we need more of your grate videos ✌🏻

  • @C4nix_official
    @C4nix_official 27 дней назад