16.10.2014 Views

Adding ASLR to Jailbroken iPhones [PDF] - Antid0te

Adding ASLR to Jailbroken iPhones [PDF] - Antid0te

Adding ASLR to Jailbroken iPhones [PDF] - Antid0te

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Brute Force Pointer Detection (I)<br />

• remember it is ARM, so pointers are aligned<br />

• a pointer should be a value greater than or equal 0x1000<br />

• and smaller than the highest vmaddr of the binary<br />

• just assume dwords that match these criteria are pointers<br />

➡ color them in IDA and manual review<br />

Stefan Esser • <strong>Adding</strong> <strong>ASLR</strong> <strong>to</strong> jailbroken <strong>iPhones</strong> • December 2010 •<br />

52

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!