glibc ptmalloc allocator의 동작 원리를 분석하고, 힙 익스플로잇 기술을 공부합니다.
- ptmalloc2 allocator, security check
- double free, fastbin dup + 문제
- fastbin dup consolidate, unsafe unlink + 문제
- memory leak, unsorted bin attack + 문제
- overlapping chunks, poison NULL byte, large bin attack + 문제
- house of lore, house of force + 문제
Heap Allocator Exploit, Dreamhack
Binary Exploitaion-Heap, ir0nestone
TechNote, Lazenca.0x0