Binary stirring

Richard Wartell, Vishwath Mohan, Kevin W. Hamlen, Zhiqiang Lin · 2012

Unlike library code, whose instruction addresses can be randomized by address space layout randomization (ASLR), application binary code often has static instruction addresses. Attackers can exploit this limitation to craft robust shell codes for such applications, as demonstrated by a recent attack that reuses instruction gadgets from the static binary code of victim applications.

Read the paper · More papers on PaperTik