Uploaded December 2019 | Updated September 2026, 2 weeks ago
In this video we see two more common pitfalls to avoid when getting started with binary exploitation: a buffer overflow that crashes inside the ret instruction before the instruction pointer visibly changes, and shellcode that corrupts itself with stack pushes.
LEARN ON HEXTREE (ad)
Learn hacking on Hextree: hextree.io
Watch this video and more on Hextree: app.hextree.io/courses/yt-basic-buffer-overflows/common-exploitation-pitfalls
Join the Hextree Discord: discord.gg/xgQpCQCpvy
CHAPTERS
00:00 - Two confusing exploit-development pitfalls
00:33 - Building the vulnerable buffer-overflow example
02:40 - Why the segmentation fault looks misleading
04:00 - Debugging the faulting ret instruction
06:51 - Running the shellcode exploit under GDB
08:23 - Watching stack pushes overwrite the shellcode
11:50 - A viewer's diagnosis of shellcode self-destruction
13:18 - Moving shellcode away from the stack pointer
14:23 - Placing shellcode after the return address
15:12 - The two debugging lessons
SUPPORT
Per video: patreon.com/join/liveoverflow
Per month: youtube.com/channel/UClcE-kVhqyiHCcjYwcpfj9w/join
Buy my handwriting font (ad): shop.liveoverflow.com
WATCH, FOLLOW & READ
Second channel: youtube.com/LiveUnderflow
Twitch: twitch.tv/LiveOverflow
Twitter: twitter.com/LiveOverflow
Instagram: instagram.com/LiveOverflow
TikTok: tiktok.com/@liveoverflow_
LiveOverflow blog: liveoverflow.com
Hextree blog (ad): hextree.io/blog
#BufferOverflow #BinaryExploitation #LiveOverflow
(ad) LiveOverflow YouTube channel is supported by advertisement and product placement.
In this video we see two more common pitfalls to avoid when getting started with binary exploitation: a buffer overflow that crashes inside the ret instruction before the instruction pointer visibly changes, and shellcode that corrupts itself with stack pushes.
LEARN ON HEXTREE (ad)
Learn hacking on Hextree: hextree.io
Watch this video and more on Hextree: app.hextree.io/courses/yt-basic-buffer-overflows/common-exploitation-pitfalls
Join the Hextree Discord: discord.gg/xgQpCQCpvy
CHAPTERS
00:00 - Two confusing exploit-development pitfalls
00:33 - Building the vulnerable buffer-overflow example
02:40 - Why the segmentation fault looks misleading
04:00 - Debugging the faulting ret instruction
06:51 - Running the shellcode exploit under GDB
08:23 - Watching stack pushes overwrite the shellcode
11:50 - A viewer's diagnosis of shellcode self-destruction
13:18 - Moving shellcode away from the stack pointer
14:23 - Placing shellcode after the return address
15:12 - The two debugging lessons
SUPPORT
Per video: patreon.com/join/liveoverflow
Per month: youtube.com/channel/UClcE-kVhqyiHCcjYwcpfj9w/join
Buy my handwriting font (ad): shop.liveoverflow.com
WATCH, FOLLOW & READ
Second channel: youtube.com/LiveUnderflow
Twitch: twitch.tv/LiveOverflow
Twitter: twitter.com/LiveOverflow
Instagram: instagram.com/LiveOverflow
TikTok: tiktok.com/@liveoverflow_
LiveOverflow blog: liveoverflow.com
Hextree blog (ad): hextree.io/blog
#BufferOverflow #BinaryExploitation #LiveOverflow
(ad) LiveOverflow YouTube channel is supported by advertisement and product placement.










