X-Nico

2 unusual facts about Heap spraying


Heap spraying

Many web browser exploits that use heap spraying consist only of a heap spray that is copy-pasted from a previous exploit combined with a small piece of script or HTML that triggers the vulnerability.

Depending on how the browser implements strings, either ASCII or Unicode characters can be used in the string.



see also