Root Cause Analysis With AddressSanitizer (ASan) | Ep. 06 @LiveOverflow
Root Cause Analysis With AddressSanitizer (ASan) | Ep. 06  @LiveOverflow
Uploaded July 2021 | Updated September 2026, 2 weeks ago
Now that we found a crash and got a minimal testcase last episode, we can now try to find the true location of the overflow. ASan is an invaluable tool for that.

LEARN ON HEXTREE (ad)
Learn hacking on Hextree: hextree.io
Watch this video and more on Hextree: app.hextree.io/courses/yt-sudoedit/understanding-the-vulnerability
Join the Hextree Discord: discord.gg/xgQpCQCpvy

Fuzzing Project: fuzzing-project.org/tutorial2.html
Grab the files: github.com/LiveOverflow/pwnedit
Full Playlist: youtube.com/playlist?list=PLhixgUqwRTjy0gMuT4C3bmjeZjuNQyqdx

Episode 06:

CHAPTERS
00:00 - Intro
00:47 - Create sudo ASan build
01:47 - Investigating weird issue
04:14 - Accidentally solving the problem
05:10 - Improve AddressSanitizer Debug Output
06:49 - Interpreting AddressSanitizer Output
07:23 - Triaging More Unique Crashes
08:25 - Plan For Next Steps

SUPPORT
Per video: patreon.com/join/liveoverflow
Per month: youtube.com/channel/UClcE-kVhqyiHCcjYwcpfj9w/join
Buy my handwriting font (ad): shop.liveoverflow.com

WATCH, FOLLOW & READ
Second channel: youtube.com/LiveUnderflow
Twitch: twitch.tv/LiveOverflow
Twitter: twitter.com/LiveOverflow
Instagram: instagram.com/LiveOverflow
TikTok: tiktok.com/@liveoverflow_
LiveOverflow blog: liveoverflow.com
Hextree blog (ad): hextree.io/blog

#BufferOverflow #BugBounty #LiveOverflow

(ad) LiveOverflow YouTube channel is supported by advertisement and product placement.
Root Cause Analysis With AddressSanitizer (ASan) | Ep. 06Script Gadgets! Google Docs XSS Vulnerability WalkthroughThe Same Origin Policy - Hacker HistoryDEF CON & Black Hat Trip 2024Why Hackers Love the Number 1,094,795,585Why MissingNo Multiplies Items!Discussing Heap Exploit Strategies for sudo - Ep. 09Introduction to Docker for CTFsWhat is a Protocol? (Deepdive)Failed DOM Clobbering Research - All The Little Things 1/2 (web) Google CTF 2020Local Root Exploit in HospitalRun SoftwareCode Review vs. Dynamic Testing explained with Minecraft
LiveOverflow |

Root Cause Analysis With AddressSanitizer (ASan) | Ep. 06

SHARE TO X SHARE TO REDDIT SHARE TO FACEBOOK WALLPAPER