16.10.2014 Views

Adding ASLR to Jailbroken iPhones [PDF] - Antid0te

Adding ASLR to Jailbroken iPhones [PDF] - Antid0te

Adding ASLR to Jailbroken iPhones [PDF] - Antid0te

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Stack Randomization (I)<br />

• stack of main thread is allocated near dyld<br />

• usually mapped at<br />

0x2FD00000 -> 0x2FDFFFFF or 0x2FF10000 -> 0x2FFFFFFF<br />

• predictable location allows for easier exploitation of e.g. stack based<br />

buffer overflows<br />

• relocation can be done in user - space<br />

Stefan Esser • <strong>Adding</strong> <strong>ASLR</strong> <strong>to</strong> jailbroken <strong>iPhones</strong> • December 2010 •<br />

45

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!