It is worth mentioning that these techniques appear to be Win32 only, I could not re-use the same tactic on Linux sadly :(
-
-
-
Yes, they work only in Firefox 32-bit (on Win32 or Win64) due to the smaller address space compared to 64-bit.
- Još 2 druga odgovora
Novi razgovor -
-
-
PoCs are tested. If sth. is wrong or does not work. ping me :-) Feedback's welcome
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi
-
-
-
Nice work
-
Thanks! :)
Kraj razgovora
Novi razgovor -
-
-
Once, for a stack overflow I JIT Sprayed and I made my vulnerable function called by an JIT optimized function, after that a partial RIP overwrite of the JIT optmized function saved_rip is enough to bypass PIE and rule them all ... no leak needed
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi
-
Čini se da učitavanje traje već neko vrijeme.
Twitter je možda preopterećen ili ima kratkotrajnih poteškoća u radu. Pokušajte ponovno ili potražite dodatne informacije u odjeljku Status Twittera.