zlacker

[parent] [thread] 1 comments
1. 0x0+(OP)[view] [source] 2018-01-18 21:12:08
But with ROP, there's usually no need to write into the text-segment to execute arbitrary code.
replies(1): >>blackf+ZE
2. blackf+ZE[view] [source] 2018-01-19 03:56:37
>>0x0+(OP)
In order to do ROP, you need to chain together gadgets of code segments which means you need to be able to see the source code/binary. This doesn't reveal any information about the call stack nor the available libraries to chain together ROP. And that's if stack canaries haven't screwed things up already.
[go to top]