This is the same vulnerability Vupen used at Pwn2Own 2012. It leaks the vftable of the mshtml!CButtonLayout Object by overwriting a BSTR string buffer before the object and reading past the end of the string. This exploit fully bypasses ASLR & DEP and was developed by binjo & mr_me. More information can be found at

Download :

[Enlace externo eliminado para invitados]

TEST DEMO :

[Enlace externo eliminado para invitados]
Ida pro 5.0
ollydbg
Windbg
Inmunytydebugger
Hexing
y un cerebro

Mostrar/Ocultar

Responder

Volver a “Exploits”