Twitter | Pretraživanje | |
Will Dormann
Are there any tools to auto-enumerate any running processes in Windows that don't leverage ASLR themselves, or have libraries loaded that don't leverage ASLR? Sort of like what's outlined at but without requiring any user interaction.
Reply Retweet Označi sa "sviđa mi se" More
Will Dormann 22. sij
Odgovor korisniku/ci @DidierStevens
Since this doesn't seem to be a thing, I've created a rudimentary python script that does it. Seems useful. Note: For now it requires both Sysinternals ListDLLs and Microsoft dumpbin.exe
Reply Retweet Označi sa "sviđa mi se"
Will Dormann 22. sij
Odgovor korisniku/ci @DidierStevens
I would love to see a "wall of shame" to call out vendors/applications that aren't ASLR compliant. Anybody who runs this script on a real-world system would be able to help contribute!
Reply Retweet Označi sa "sviđa mi se"
Jonathan 2. velj
Odgovor korisniku/ci @wdormann @DidierStevens
It seems to work just fine if mandatory ASLR is enabled system-wide.
Reply Retweet Označi sa "sviđa mi se"