Navigation
Sponsored Advertise here

Signal Labs - Vulnerability Research & Fuzzing

posted by Leviathan and Last Post: 12 days ago


Signal Labs - Vulnerability Research & Fuzzing  3057
EPHAK Member
18
Posts
0
Threads
Member
#11
(1 year ago)Leviathan Wrote: Vulnerability Research & FuzzingA complete introduction to 0-day discovery for Windows targets, focusing on closed-source real-world software, including kernel modules and user code.
[Image: Vulnerability-Research-and-Fuzzing-C-qnw...knrl5a.jpg]
Learn about snapshot-fuzzing real-world Windows targets & finding logic 0-days.Who should take this course?
Anyone looking to get into Windows vulnerability research and fuzzing, although many of the concepts and approaches taught can be used for fuzzing on other platforms (MacOS/Linux, etc), all the exercises will focus on Windows. Also useful for red-teamers looking to add zero-days to their arsenal (with a dedicated section on finding quick 0-days on time-limited engagements).
Most topics are beginner friendly and assume limited or no prior experience with modern fuzzing approaches and Windows vulnerability research, with advanced topics (hypervisors & emulators, for example) presented in an easy-to-understand manner.
Course SyllabusCore Windows Internals & Fuzzing Theory (Key Knowledge):Introductory Hands-On FuzzingDebugging & Crash Analysis (Bug Analysis):Advanced Fuzzing w/ Real TargetsAdvanced Fuzzing Continued (Snapshots, Custom Techniques)Fast 0-days & Logic Bugs (Bug Discovery): 


SPOILER Show

Reply
0xhexer Junior Member
3
Posts
0
Threads
Junior Member
#12
(1 year ago)Leviathan Wrote: Vulnerability Research & FuzzingA complete introduction to 0-day discovery for Windows targets, focusing on closed-source real-world software, including kernel modules and user code.
[Image: Vulnerability-Research-and-Fuzzing-C-qnw...knrl5a.jpg]
Learn about snapshot-fuzzing real-world Windows targets & finding logic 0-days.Who should take this course?
Anyone looking to get into Windows vulnerability research and fuzzing, although many of the concepts and approaches taught can be used for fuzzing on other platforms (MacOS/Linux, etc), all the exercises will focus on Windows. Also useful for red-teamers looking to add zero-days to their arsenal (with a dedicated section on finding quick 0-days on time-limited engagements).
Most topics are beginner friendly and assume limited or no prior experience with modern fuzzing approaches and Windows vulnerability research, with advanced topics (hypervisors & emulators, for example) presented in an easy-to-understand manner.
Course SyllabusCore Windows Internals & Fuzzing Theory (Key Knowledge):Introductory Hands-On FuzzingDebugging & Crash Analysis (Bug Analysis):Advanced Fuzzing w/ Real TargetsAdvanced Fuzzing Continued (Snapshots, Custom Techniques)Fast 0-days & Logic Bugs (Bug Discovery): 


SPOILER Show
hhuu

Reply
superuser Member
35
Posts
0
Threads
Member
#13
(1 year ago)Leviathan Wrote: [font][font]Investigación de vulnerabilidades y fuzzing: [/font][/font][font][font]Una introducción completa al descubrimiento de vulnerabilidades de día cero para sistemas Windows, centrándose en software real de código cerrado, incluidos módulos del kernel y código de usuario.[/font][/font]
[Image: Vulnerability-Research-and-Fuzzing-C-qnw...knrl5a.jpg]
[font][font]Aprende sobre el fuzzing de instantáneas en sistemas Windows reales y cómo encontrar vulnerabilidades lógicas de día cero. [/font][/font][font][font]¿Quién debería tomar este curso?[/font][/font]
[font][font]Este curso está dirigido a quienes deseen iniciarse en la investigación de vulnerabilidades y el fuzzing en Windows. Si bien muchos de los conceptos y enfoques que se enseñan pueden aplicarse a otras plataformas (macOS/Linux, etc.), todos los ejercicios se centrarán en Windows. También resulta útil para los equipos rojos que buscan ampliar su arsenal con vulnerabilidades de día cero (con una sección dedicada a la detección rápida de este tipo de vulnerabilidades en pruebas con tiempo limitado).[/font][/font]
[font][font]La mayoría de los temas son aptos para principiantes y presuponen poca o ninguna experiencia previa con los métodos modernos de fuzzing y la investigación de vulnerabilidades de Windows, mientras que los temas avanzados (hipervisores y emuladores, por ejemplo) se presentan de forma fácil de entender.[/font][/font]
[font][font]Programa del curso [/font][/font][font][font]Fundamentos de Windows y teoría de fuzzing (conocimientos clave): [/font][/font][font][font]Introducción práctica de fuzzing [/font][/font][font][font]Depuración y análisis de fallos (análisis de errores): [/font][/font][font][font]Fuzzing avanzado con objetivos reales [/font][/font][font][font]Fuzzing avanzado (continuación) (instantáneas, técnicas personalizadas) [/font][/font][font][font]Vulnerabilidades de día cero rápidas y errores lógicos (descubrimiento de errores):[/font][/font] 


[font][font]
SPOILER Show
[/font][/font]

[font][font]www[/font][/font]
Reply


Create an account or sign in to comment
You need to be a member in order to leave a comment
Create an account
Sign up for a new account in our community. It's easy!
or
Sign in
Already have an account? Sign in here.


Users browsing this thread: 1 Guest(s)