WCU / Cybersecurity
~/CSC 472/Class 08
CSC 472 · Class 08

Multi-Stage Exploitation — Info Leaks and GOT Overwrite

20 knowledge points. Work through them in order, or jump to any topic.

//

Knowledge Points

01The Modern Defense Stack → 02Two Problems, Two Primitives → 03Dynamic Linking: Where Does printf Live? → 04Lazy Binding: The GOT Is Resolved On Demand → 05PLT / GOT Diagram → 06Leaking an Address to Defeat ASLR → 07Where Do the Offsets Come From? → 08Computing the libc Base from a Leak (pwntools) → 09Overwriting a GOT Entry → 10one_gadget and system: Two Ways to a Shell → 11Partial RELRO vs. Full RELRO → 12The Two-Stage Exploit Workflow → 13Why the Program Must Loop Back → 14Working Against a Remote Service → 15Match the Target's libc → 16Defending Against the Chain → 17The General Principle → 18Lab 5: Remote Multi-Stage Exploitation → 19Summary → 20Ethics and Scope Reminder →