Premium Only Content

10: Bypassing Stack Canaries (leak + write) - Buffer Overflows - Intro to Binary Exploitation (Pwn)
10th video from the "Practical Buffer Overflow Exploitation" course covering the basics of Binary Exploitation. NX and stack canaries are enabled this time, so we'll use a printf() format string vulnerability leak the stack canary, allowing us to overwrite it with the expected value. We'll use checksec, ghidra, pwndbg and pwntools! Write-ups/tutorials aimed at beginners - Hope you enjoy 🙂 #BinaryExploitation #BufferOverflow #BinExp #RE #Pwn #PwnTools
Find the binary files, source code and scripts to go with the series @ https://github.com/Crypto-Cat/CTF/tree/main/pwn/binary_exploitation_101
↢Social Media↣
Twitter: https://twitter.com/_CryptoCat
GitHub: https://github.com/Crypto-Cat
HackTheBox: https://app.hackthebox.eu/profile/11897
LinkedIn: https://www.linkedin.com/in/cryptocat
Reddit: https://www.reddit.com/user/_CryptoCat23
YouTube: https://www.youtube.com/CryptoCat23
Twitch: https://www.twitch.tv/cryptocat23
↢Binary Exploitation / Reverse Engineering↣
Pwn.College: https://pwn.college
How2Heap: https://github.com/shellphish/how2heap
NightMare: https://guyinatuxedo.github.io
Ir0nstone: https://ir0nstone.gitbook.io/notes/types/stack
PinkDraconian: https://www.youtube.com/playlist?list=PLeSXUd883dhjmKkVXSRgI1nJEZUDzgLf_
More: https://github.com/Crypto-Cat/CTF#readme
↢Resources↣
Ghidra: https://ghidra-sre.org/CheatSheet.html
PwnTools: https://github.com/Gallopsled/pwntools-tutorial
CyberChef: https://gchq.github.io/CyberChef
HackTricks: https://book.hacktricks.xyz/exploiting/linux-exploiting-basic-esp
GTFOBins: https://gtfobins.github.io
Decompile Code: https://www.decompiler.com
Run Code: https://tio.run
↢Chapters↣
Start: 0:00
Basic File Checks: 0:25
Review Source Code: 2:06
Disassemble with Ghidra: 3:05
Outline Attack (Canary Leak + Write): 3:56
Fuzz Printf Format Vuln for Canary: 5:23
Locating Canaries with GDB-PwnDbg: 6:42
PwnTools Exploit Script: 10:37
Additional Pwn/CTF Resources: 12:57
End: 14:38
-
LIVE
Dear America
2 hours agoCharlie’s Killer Fights For NO DEATH PENALTY!! NOT HAPPENING!! + Gov Shutdown Imminent!!
2,321 watching -
LIVE
Right Side Broadcasting Network
3 hours agoLIVE: President Trump and Pete Hegseth Address Military Leaders at Quantico - 9/30/25
10,835 watching -
LIVE
Badlands Media
7 hours agoBadlands Daily: September 30, 2025
2,717 watching -
LIVE
The White House
1 hour agoPresident Trump Delivers Remarks to the Department of War
2,040 watching -
LIVE
Law&Crime
50 minutes agoLIVE: Gun-Cleaning Gone Deadly Trial – FL v. Leslie Boileau – Day 1
82 watching -
LIVE
Nikko Ortiz
1 hour agoShotguns Only? - Rumble LIVE
135 watching -
LIVE
Randi Hipper
50 minutes agoSEC CHAIR PAUL ATKINS DROPS BOMBSHELL NEWS! BITCOIN INVESTORS LISTEN!
52 watching -
LIVE
Total Horse Channel
2 hours ago2025 Quarter Horse Congress * Celeste Center * Tuesday September 30th
67 watching -
1:00:17
SGT Report
12 hours agoEND GAME: SILVER & GOLD ALL-TIME HIGHS -- Bix Weir
19K16 -
LIVE
Matt Kohrs
10 hours agoGovernment Shutdown, Stocks on Tilt & Live Trading Market Open
566 watching