glibc is about to effectively turn off ASLR by default on x86_64 because some broken Intel chips are 3% slower. https://sourceware.org/ml/libc-alpha/2015-12/msg00221.html …
@CopperheadSec @solardiz The right way to do this is to alloc a 4GB PROT_NONE zone and use offsets, not assume low addrs are free.
-
-
@RichFelker@solardiz They probably wouldn't want to base the performance cost of needing to resolve the real addresses. -
@RichFelker@solardiz They're not even willing to pay for runtime relocations so they generate an image on boot and map it statically. -
@RichFelker@solardiz Combined with Zygote spawning and the entropy loss from jemalloc's design... Android has no meaningful ASLR for apps. -
@CopperheadSec@RichFelker@solardiz this is why we can't have nice things? - End of conversation
New conversation -
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.