Freshly Printed - allow 10 days lead
A Guide to Kernel Exploitation
Attacking the Core
Learn how kernel exploits expose operating system vulnerabilities and give the attacker complete control!
Enrico Perla (Author), Massimiliano Oldani (Author)
9781597494861, Elsevier Science
Paperback / softback, published 28 October 2010
464 pages, Approx. 60 Illustrations
23.5 x 19 x 2.9 cm, 0.81 kg
"A very interesting book that not only exposes readers to kernel exploitation techniques, but also deeply motivates the study of operating systems internals, moving such study far beyond simple curiosity."--Golden G. Richard III, Ph.D., Professor of Computer Science, University of New Orleans and CTO, Digital Forensics Solutions, LLC
A Guide to Kernel Exploitation: Attacking the Core discusses the theoretical techniques and approaches needed to develop reliable and effective kernel-level exploits, and applies them to different operating systems, namely, UNIX derivatives, Mac OS X, and Windows. Concepts and tactics are presented categorically so that even when a specifically detailed vulnerability has been patched, the foundational information provided will help hackers in writing a newer, better attack; or help pen testers, auditors, and the like develop a more concrete design and defensive structure.
The book is organized into four parts. Part I introduces the kernel and sets out the theoretical basis on which to build the rest of the book. Part II focuses on different operating systems and describes exploits for them that target various bug classes. Part III on remote kernel exploitation analyzes the effects of the remote scenario and presents new techniques to target remote issues. It includes a step-by-step analysis of the development of a reliable, one-shot, remote exploit for a real vulnerabilitya bug affecting the SCTP subsystem found in the Linux kernel. Finally, Part IV wraps up the analysis on kernel exploitation and looks at what the future may hold.
Part I: A Journey to Kernel-Land
1. From User-Land to Kernel-Land Attacks
2. A Taxonomy of Kernel Vulnerabilities
3. Stairway to Successful Kernel Exploitation
Part II: The UNIX Family, Mac OS X, and Windows
4. The UNIX Family
5. Mac OS X
6. Windows
Part III: Remote Kernel Exploitation
7. Facing the Challenges of Remote Kernel Exploitation
8. Putting It All Together: A Linux Case Study
Part IV: Final Words
9. Kernel Evolution: Future Forms of Attack and Defense
Subject Areas: Computer security [UR], Operating systems [UL], Management of specific areas [KJMV]