19.09.2015 Views

OPTIMIZED FUZZING IOKIT IN IOS

us-15-Lei-Optimized-Fuzzing-IOKit-In-iOS

us-15-Lei-Optimized-Fuzzing-IOKit-In-iOS

SHOW MORE
SHOW LESS
  • No tags were found...

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Information Extraction(II): IOExternalMethod<br />

Carrier<br />

• Mach Msg OOL Data<br />

• locating OOL Data address<br />

mach_port_space_info-><br />

struct ipc_mqueue-><br />

struct ipc_kmsg_queue messages-><br />

struct ipc_kmsg *ikmq_base-><br />

mach_msg_header_t *ikm_header-><br />

msgh_remote_port(ool address)-><br />

msgh_remote_port + 52

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!