Technical Papers & Presentations

These papers and presentations have been given all over the world at security conferences. We have collected them here to let you quickly examine Immunity's expertise.

December 7, 2010: "Code Analysis Carpentry" --Ruxcon 2010 (Sean Heelan)
PDF

December 6, 2010: "Aleatory Persistent Threat" -- Kiwicon 2010 (Nico Waisman)
PDF

December 6, 2010: "Padding Oracle for the masses" -- Ruxcon 2010 (Nico Waisman)
PDF

September 20, 2010: "DEPLIB 2.0" -- Ekoparty 2010 (Pablo Sole)
PDF

August 3, 2010: "Aleatory Persistent Threat" -- Blackhat 2010 (Nico Waisman)
PDF

July 16, 2010: "Applying Taint Analysis and Theorem Proving to Exploit Development" -- Recon 2010 (Sean Heelan)
PDF

June 16, 2010: "Why Attackers Win" -- FIRST 2010 keynote (Dave Aitel)
ZIP

May 25, 2010: Confidence -- General notes about exploiting Windows x64 (Sebastian Fernandez)
PDF

December 21, 2009: PatchGuard (Gustavo Scotti)
PDF

November 30, 2009: Exploit Categories Explained (Alex McGeorge)
PDF

April 16, 2009: BlackHat Europe 2009 -- VAASeline (Rich Smith)
PDF #1, PDF #2

March 19, 2009: CanSecWest Keynote -- Writing User-Friendly Exploits (Skylar Rampersaud)
PDF

November 8, 2008: Apology of 0days -- Nicolas Waisman at H2HC in Brazil
PDF

November 8, 2008: DEPLIB -- Pablo Sole at H2HC in Brazil
PDF

October 4, 2008: Economies of Scale in Hacking (Dave Aitel)
PDF

September 25, 2008: Corruption (Dave Aitel)
PDF

June 16, 2008: Attacking Embedded Languages (Pablo Sole)
ODP

June 11, 2008: Exploiting Kernel Pool Overflows (Kostya Kortchinsky)
ODP

June 11, 2008: The I2OMGMT Driver Impersonation Attack (Justin Seitz)
PDF
ODT

March 28, 2008: The Hacker Strategy (updated for Harvard ABCD meeting)
PDF

February 29, 2008: IO Immunity Style (Sinan Eren)
PDF

January 26, 2008: The Hacker Strategy (S4 SCADA conference keynote)
PDF

January 22, 2008: Going Against The Gradient
PDF
OpenOffice

December 14, 2007: Beyond Fast Flux
OpenOffice (presentation)
PDF

November 23, 2007: Exploit Development with Immunity Debugger
OpenOffice (presentation)

August 10, 2007: Damian Gomez - Intelligent Debugging
PDF (presentation)
Openoffice (presentation)

July 6, 2007: Nicolas Waisman - Understanding and Bypassing Windows Heap Protection
PDF (presentation)
Openoffice (presentation)

July 6, 2007: Justine Aitel - The IPO of 0days
PDF (presentation)
Openoffice (presentation)

April 8, 2007: Dave Aitel - CANVAS Command Line Executer
Openoffice (paper)

April 8, 2007: Kostya Kortchinsky - Macro-Reliability in Win32 Exploits
Openoffice (presentation)

December 6, 2006: Dave Aitel - Remote Language Detection
Openoffice (paper)

August 30, 2006: Dave Aitel - MSRPC Fuzzing
OpenOffice (paper)
OpenOffice (presentation)

February 13, 2006: Dave Aitel - Resilience
PDF
OpenDocument
TGZ source

January 26, 2006: Dave Aitel - Nematodes (updated)
PDF
OpenDocument
VisualSploit Preliminary Flash Demo

November, 2005: Bas Alberts - Webmin: Perl Format String Bugs Case Study
PDF

September 29, 2005 Dave Aitel - Nematodes
OpenOffice PDF

July, 2005: Bas Alberts - The zlib infate_table bug: from patch to playtime
PDF

May 9th, 2005 Dave Aitel - Practical IDS Evasion
OpenOffice

Feb, 28th, 2005 Bas Alberts - Exploiting the PHP_Limit bug
PDF

Jan 29, 2005 Dave Aitel - 0days: How hacking really works
Open Office PDF HTML

Oct 12, 2004 Dave Aitel - The CANVAS Reference Implementation
Open Office

Oct 12, 2004 Dave Aitel - Advanced Ordnance 2
Open Office PDF

August 12, 2004 Dave Aitel - Microsoft Windows, a lower Total Cost of Ownership
Open Office    |    PDF

June 21, 2004 Dave Aitel - Beyond Best Practices (Given at OWASP AppSec 2004)
Open Office

May 19, 2004 Dave Aitel - Rapid Application Development in Linux using pyGTK
Open Office

March 1, 2004 Dave Aitel - Enterprise Secific Software Security Issues:
Open Office

Feb 4, 2003 The Advantages of Block-Based Protocol Analysis for Security Testing:
Open Office    |    HTML    |    Text    |    Post Script    |    PDF

July 29, 2002 Using SPIKE 101
Power Point    |    Real Media

Feb 24, 2003 - Vivisection of an Exploit Development Process
Power Point    |    Real Media

May 1, 2003 - Windows Exploitation for Unix Hackers
Power Point

Sep 29, 2003 - MOSDEF
Power Point

Jan 27, 2004 - Advanced MOSDEF
Open Office

March 1, 2003 Nicolas Waisman - Linux Heap Overflow Techniques
Power Point

Sep 12, 2003 Microsoft Heap Overflows I/II
PDF    |    Open Office

Sep 12, 2003 Microsoft Heap Overflows II/II
PDF    |    Open Office