WCU / Cybersecurity
~/CSC 472/Class 08
CSC 472 · Class 08

Multi-Stage Exploitation — Info Leaks and GOT Overwrite

20 knowledge points. Work through them in order, or jump to any topic.

//

Knowledge Points

01The Modern Defense Stack 02Two Problems, Two Primitives 03Dynamic Linking: Where Does printf Live? 04Lazy Binding: The GOT Is Resolved On Demand 05PLT / GOT Diagram 06Leaking an Address to Defeat ASLR 07Where Do the Offsets Come From? 08Computing the libc Base from a Leak (pwntools) 09Overwriting a GOT Entry 10one_gadget and system: Two Ways to a Shell 11Partial RELRO vs. Full RELRO 12The Two-Stage Exploit Workflow 13Why the Program Must Loop Back 14Working Against a Remote Service 15Match the Target's libc 16Defending Against the Chain 17The General Principle 18Lab 5: Remote Multi-Stage Exploitation 19Summary 20Ethics and Scope Reminder