Flag: Tornado! Hurricane!

 Forums >>  Brainstorms - General  >>  Heap protection on Win 7

Topic created on: August 23, 2010 15:06 CDT by voila .

hello guys ..

After stack , now i want to learn about heap memory protections on windows 7 ... and anything and everything about heap layout on Windows ..

can you guide me where i should look (any link or blog or pdf )... i search google , bt i got link for stack memroy more than heap ... and moreover not relavant info ..


thanks
byeee

  tosanjay     August 24, 2010 06:48.56 CDT
I do not have references specific to Windows 7, but following may provide some info (google to find online):
1. Heap of Risk
2. HeapShield
3. Smashing the Heap for Fun and Profit
4. An introduction to Win32 Heap Overflows by Lin0xx

  voila     August 24, 2010 08:55.45 CDT
> tosanjay: I do not have references specific to Windows 7, but following may provide some info (google to find online):
> 1. Heap of Risk
> 2. HeapShield
> 3. Smashing the Heap for Fun and Profit
> 4. An introduction to Win32 Heap Overflows by Lin0xx


Thanks tosanjay :) .. i will look at this .. :)

  psylocn   August 25, 2010 05:27.13 CDT
"Bypassing Browser Memory Protections" Alexander Sotirov, Mark Dowd
"Attacking the Vista Heap" Ben Hawkes
"Windows Vista Heap Management Enhancements" Adrian Marinescu
"Reliable Windows Heap Exploits" Conover Horovitz
"Understanding and bypassing Windows Heap Protection" Nicolas Waisman
"HEAPS ABOUT HEAPS" Brett Moore
"Engineering Heap Overflows with JavaScript" Jake Honoroff Mark Daniel
Charlie Miller
"Heap Feng Shui in JavaScript" Alexander Sotirov

  j00ru     August 25, 2010 17:23.39 CDT
Although not strictly related to Windows 7, the Practical Windows/2003 Heap Exploitation paper from Blackhat USA 2009 (by John McDonald and Chris Valasek) is also a very thorough reference, imho ;)

  voila     August 25, 2010 22:10.10 CDT
hii .

Thanks to psylocn and j00ru :)  .

j00ru .. your link for blackhat paper is really awesome .. thanks .

thanks a lot both psylocn and j00ru  :)

  j00ru     August 26, 2010 03:09.47 CDT
You're welcome ;>
BTW. i search google , bt i got link for stack memroy more than heap ... and moreover not relavant info ..
please keep in mind that using Google or whatever search engine you like, is really a major part of a RE's work. Useful to learn it ;)

  voila     August 26, 2010 04:19.12 CDT
> j00ru: You\'re welcome ;>
> BTW. i search google , bt i got link for stack memroy more than heap ... and moreover not relavant info ..
> please keep in mind that using Google or whatever search engine you like, is really a major part of a RE\'s work. Useful to learn it ;)


Ok j00ru .. i will keep it in mind and implement it .. thanks a lot for your suggestions  :) :)

Note: Registration is required to post to the forums.

There are 28,224 total registered users.


Recently Created Topics
Reverse Engineering ...
Jan/23
Career: DoD Agency I...
Jan/22
"Disappearing&q...
Jan/17
Career: Software Sec...
Jan/11
Where is the call st...
Jan/07
IDA Pro 6.1 Breakpoi...
Jan/01
How to create data s...
Dec/30
can i search all mod...
Dec/23
IDA symbol table exp...
Dec/20
An anti-attach trick
Dec/17


Recent Forum Posts
Reverse Engineering ...
NirIzr
"Disappearing&q...
NirIzr
Reverse Engineering ...
charlie
"Disappearing&q...
charlie
An anti-attach trick
Bass
An anti-attach trick
waleeda...
An anti-attach trick
Bass
An anti-attach trick
waleeda...
An anti-attach trick
Bass
Looking for value in...
NirIzr


Recent Blog Entries
cmathieu
Feb/07
Hacker Carnival

waleedassar
Feb/06
OllyDbg v1.10 And Hardware ...

waleedassar
Jan/31
Yet Another Anti-Debug Trick

RolfRolles
Jan/22
Finding Bugs in VMs with a ...

waleedassar
Jan/13
An OllyDbg Bug Disables Sof...

More ...


Recent Blog Comments
waleedassar on:
Feb/07
OllyDbg v1.10 And Hardware ...

NirIzr on:
Feb/07
OllyDbg v1.10 And Hardware ...

NirIzr on:
Feb/05
Yet Another Anti-Debug Trick

trolotou on:
Feb/05
Doudoune Moncler -Pennies F...

waleedassar on:
Feb/01
Yet Another Anti-Debug Trick

More ...


Imagery
SoySauce Blueprint
Jun 6, 2008

[+] expand

View Gallery (11) / Submit