
Exploit Development 학습을 위한 엄선된 리소스 목록(도서, 튜토리얼, 강좌, 도구 및 취약한 애플리케이션)
익스플로잇 개발을 배우기 위한 선별된 리소스 목록(책, 튜토리얼, 강좌, 도구 및 취약한 애플리케이션)
Fabio Baroni의 프로젝트.
전체 기사는 여기서 읽으세요! http://www.pentest.guru/index.php/2016/01/28/best-books-tutorials-and-courses-to-learn-about-exploit-development/
해킹: 공격의 예술
버그 헌터의 일기: 소프트웨어 보안의 황무지를 여행하는 안내서
셸코더의 핸드북: 보안 허점 발견 및 익스플로잇
소켓, 셸코드, 포팅 및 코딩: 보안 전문가를 위한 익스플로잇 리버스 엔지니어링과 도구 코딩
보안 도구 및 익스플로잇 작성
버퍼 오버플로 공격: 탐지, 익스플로잇, 예방
침투 테스트, 익스플로잇 개발 및 취약점 연구를 위한 Metasploit 툴킷
https://www.corelan.be/index.php/2009/07/19/exploit-writing-tutorial-part-1-stack-based-overflows/
https://www.corelan.be/index.php/2010/01/09/exploit-writing-tutorial-part-8-win32-egg-hunting/
https://www.corelan.be/index.php/2010/03/22/ken-ward-zipper-exploit-write-up-on-abysssec-com/
https://www.corelan.be/index.php/2011/01/30/hack-notes-rop-retnoffset-and-impact-on-stack-setup/
https://www.corelan.be/index.php/2011/05/12/hack-notes-ropping-eggs-for-breakfast/
https://www.corelan.be/index.php/2011/07/03/universal-depaslr-bypass-with-msvcr71-dll-and-mona-py/
https://www.corelan.be/index.php/2011/11/18/wow64-egghunter/
https://www.corelan.be/index.php/2012/02/29/debugging-fun-putting-a-process-to-sleep/
https://www.corelan.be/index.php/2013/02/26/root-cause-analysis-memory-corruption-vulnerabilities/
https://www.corelan.be/index.php/2013/01/18/heap-layout-visualization-with-mona-py-and-windbg/
https://www.corelan.be/index.php/2013/02/19/deps-precise-heap-spray-on-firefox-and-ie10/
https://www.corelan.be/index.php/2013/07/02/root-cause-analysis-integer-overflows/
http://www.securitytube.net/groups?operation=view&groupId=7 익스플로잇 리서치 메가프라이머
http://www.securitytube.net/groups?operation=view&groupId=4 버퍼 오버플로 익스플로잇 포 리눅스 메가프라이머
http://www.securitytube.net/groups?operation=view&groupId=3 포맷 문자열 취약점 메가프라이머
http://www.securitysift.com/windows-exploit-development-part-1-basics/
http://www.securitysift.com/windows-exploit-development-part-2-intro-stack-overflow/
http://www.securitysift.com/windows-exploit-development-part-3-changing-offsets-and-rebased-modules/
http://www.securitysift.com/windows-exploit-development-part-4-locating-shellcode-jumps/
http://www.securitysift.com/windows-exploit-development-part-5-locating-shellcode-egghunting
http://www.securitysift.com/windows-exploit-development-part-6-seh-exploits
http://www.securitysift.com/windows-exploit-development-part-7-unicode-buffer-overflows
IDA Pro
OllyDbg
WinDbg
Mona.py