Class Central is learner-supported. When you buy through links on our site, we may earn an affiliate commission.

YouTube

Super Hat Trick: Exploiting Chrome and Firefox Four Times

Black Hat via YouTube

Overview

Coursera Flash Sale
40% Off Coursera Plus for 3 Months!
Grab it
This Black Hat conference talk explores critical vulnerabilities in modern JavaScript engines, revealing four remote code execution (RCE) exploits affecting Chrome's V8 and Firefox's SpiderMonkey. Dive into the technical analysis of vulnerabilities found in V8's new JSSet.Union implementation and Turboshaft mid-tier compiler, as well as SpiderMonkey's WebAssembly Garbage Collection specification. Learn the methodology behind discovering these security flaws, understand their root causes, and examine the four classic vulnerability patterns that commonly appear in JavaScript engines. The presenters demonstrate stable exploitation techniques and provide defensive strategies to help improve security in both Google and Mozilla browsers. Presented by security researchers from Qihoo 360 Vulnerability Research Institute and academic institutions, this 34-minute technical session includes live demonstrations of the RCE vulnerabilities in action.

Syllabus

Super Hat Trick: Exploit Chrome and Firefox Four Times

Taught by

Black Hat

Reviews

Start your review of Super Hat Trick: Exploiting Chrome and Firefox Four Times

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.