Conversation

This Tweet was deleted by the Tweet author. Learn more
Replying to
I think you should distinguish between whether checks like double free detection are 100% reliable deterministic checks or probabilistic ones. Could also distinguish between strength for probabilistic checks but it's less important since the main bypass would be via leaks.
1
1
Replying to and
Similar for a lot of those things. There's a huge range in what guard pages could mean, etc. A main difference between how these things are done is often not whether they're done but whether it's a weak, sparsely used probabilistic mitigation or a stronger deterministic one, etc.