Class Central is learner-supported. When you buy through links on our site, we may earn an affiliate commission.

YouTube

Timekiller: Escape From QEMU/KVM - Exploiting Asynchronous Clock Vulnerabilities

Hack In The Box Security Conference via YouTube

Overview

Google, IBM & Meta Certificates – 40% Off
One Coursera Plus subscription covers most Professional Certificates on Coursera.
Unlock All Certificates
This talk demonstrates Timekiller, an asynchronous-clock race technique for turning a heap overflow write in QEMU’s virtio-crypto device into a guest-to-host escape. It explains how the technique enables arbitrary address writes and makes otherwise difficult-to-exploit vulnerabilities exploitable.

Syllabus

#HITB2023HKT D1T2 - Timekiller: Escape From QEMU/KVM - Y. Jia, X. Lei, Yiming Tao, G. Pan & C. Wu

Taught by

Hack In The Box Security Conference

Reviews

Start your review of Timekiller: Escape From QEMU/KVM - Exploiting Asynchronous Clock Vulnerabilities

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.