A Guide to Kernel Exploitation


Book Description

A Guide to Kernel Exploitation: Attacking the Core discusses the theoretical techniques and approaches needed to develop reliable and effective kernel-level exploits, and applies them to different operating systems, namely, UNIX derivatives, Mac OS X, and Windows. Concepts and tactics are presented categorically so that even when a specifically detailed vulnerability has been patched, the foundational information provided will help hackers in writing a newer, better attack; or help pen testers, auditors, and the like develop a more concrete design and defensive structure.The book is organized into four parts. Part I introduces the kernel and sets out the theoretical basis on which to build the rest of the book. Part II focuses on different operating systems and describes exploits for them that target various bug classes. Part III on remote kernel exploitation analyzes the effects of the remote scenario and presents new techniques to target remote issues. It includes a step-by-step analysis of the development of a reliable, one-shot, remote exploit for a real vulnerabilitya bug affecting the SCTP subsystem found in the Linux kernel. Finally, Part IV wraps up the analysis on kernel exploitation and looks at what the future may hold. - Covers a range of operating system families — UNIX derivatives, Mac OS X, Windows - Details common scenarios such as generic memory corruption (stack overflow, heap overflow, etc.) issues, logical bugs and race conditions - Delivers the reader from user-land exploitation to the world of kernel-land (OS) exploits/attacks, with a particular focus on the steps that lead to the creation of successful techniques, in order to give to the reader something more than just a set of tricks




Canadiana


Book Description







International Socioeconomic Information Systems


Book Description

IDRC pub. Consultant report comprising recommendations and an evaluation of DEVSIS type information systems for economic and social development - discusses characteristics, achievements, major problems and suggested solutions relating to operational information systems (incl. DIS, INFOPLAN, CARISPLAN, PADIS and DEVSIS-Canada- experimental); examines proposed DEVSIS-type and DEVSIS-related systems; outlines the role of IDRC in systems design improvements. References.




Devindex Africa


Book Description




DEVSIS, the Preliminary Design of an International Information System for the Development Sciences


Book Description

Report on DEVSIS, a proposed international electronic network for the development sciences (social sciences relating to development policies) - covers indexing, information retrieval, administrative aspects, financial aspects, the possible institutional framework, etc. References.







ILA Bulletin


Book Description




Active Social Capital


Book Description

The idea of social capital allows scholars to assess the quality of relationships among people within a particular community and show how that quality affects the ability to achieve shared goals. With evidence collected from sixty-nine villages in India, Krishna investigates what social capital is, how it operates in practice, and what results it can be expected to produce. Does social capital provide a viable means for advancing economic development, promoting ethnic peace, and strengthening democratic governance? The world is richer than ever before, but more than a fifth of its people are poor and miserable. Civil wars and ethnic strife continue to mar prospects for peace. Democracy is in place in most countries, but large numbers of citizens do not benefit from it. How can development, peace and democracy become more fruitful for the ordinary citizen? This book shows how social capital is a crucial dimension of any solution to these problems.