Overview
Coursera Flash Sale
40% Off Coursera Plus for 3 Months!
Grab it
Explore the critical world of Remote Code Execution (RCE) and Arbitrary Command Execution attacks through real-world vulnerability analysis in this 28-minute conference talk. Dive deep into how attackers exploit popular open-source libraries by examining specific CVEs including CVE-2024-47076 affecting cups-filters where malformed print requests can trigger memory issues leading to system takeover, CVE-2024-6345 in python-setuptools allowing arbitrary code execution during package downloads that can compromise Python build environments, and CVE-2024-32002 in git enabling code execution during local repository cloning operations. Learn how these vulnerabilities work through detailed technical explanations and witness practical exploit execution through a live demonstration conducted in a controlled environment, providing hands-on insights into attack scenarios that threaten modern development workflows and system security.
Syllabus
Unveiling Remote Code Execution: How Vulnerabilities Lead to System Takeovers - DevConf.US 2025
Taught by
DevConf