Chapter 4. Client-side Exploitation and Antivirus Bypass
In this chapter, we will cover:
Internet Explorer unsafe scripting misconfiguration vulnerability
Internet Explorer recursive call memory corruption
Microsoft Word RTF stack buffer overflow
Adobe Reader
util.printf()
buffer overflowGenerating binary and shellcode from
msfpayload
Bypassing client-side antivirus protection using
msfencode
Using
killav.rb
script to disable antivirus programsA deeper look into the
killav.rb
scriptKilling antivirus services from the command line