Why Bother Assessing Popular Software

Why Bother Assessing Popular Software

Security BSides London via YouTube Direct link

Straw poll

1 of 36

1 of 36

Straw poll

Class Central Classrooms beta

YouTube playlists curated by Class Central.

Classroom Contents

Why Bother Assessing Popular Software

Automatically move to the next video in the Classroom when playback concludes

  1. 1 Straw poll
  2. 2 Introduction
  3. 3 How did this presentation come about
  4. 4 Agenda
  5. 5 Vendors improving security
  6. 6 Why assess popular software
  7. 7 CVS
  8. 8 Key resources
  9. 9 Attack surface
  10. 10 Adobe JavaScript
  11. 11 JavaScript in PDFs
  12. 12 Python script
  13. 13 JavaScript console
  14. 14 JavaScript debugger
  15. 15 Acro help
  16. 16 Initerating
  17. 17 Proofofconcept
  18. 18 Demo
  19. 19 Approaching the PDF vendor
  20. 20 Generating PDF files
  21. 21 Compressed PDF files
  22. 22 Fuzzing Reader
  23. 23 Crashes
  24. 24 Font Library
  25. 25 Mitigations
  26. 26 The Sandbox
  27. 27 Adobes sandbox
  28. 28 Kernel
  29. 29 JavaScript
  30. 30 Privilege
  31. 31 Trusted functions
  32. 32 Exploit demo
  33. 33 Summary
  34. 34 Conclusion
  35. 35 Future work
  36. 36 Final thanks

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.