Adding ASLR to Jailbroken iPhones [PDF] - Antid0te
Adding ASLR to Jailbroken iPhones [PDF] - Antid0te
Adding ASLR to Jailbroken iPhones [PDF] - Antid0te
You also want an ePaper? Increase the reach of your titles
YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.
iPhone libobjc does not match the source (I)<br />
• unknown large blob is the offset table<br />
• which is a list of offsets <strong>to</strong> selec<strong>to</strong>r names<br />
• knowing the content it is easy <strong>to</strong> relocate<br />
• on the iPhone the offset table is followed by an unknown table<br />
• unknown table has capacity many entries of size 1 byte<br />
• according <strong>to</strong> twitter it is a one byte checksum of the selec<strong>to</strong>r name<br />
Stefan Esser • <strong>Adding</strong> <strong>ASLR</strong> <strong>to</strong> jailbroken <strong>iPhones</strong> • December 2010 •<br />
36