12.09.2016 Views

ESCAPING THE LUA 5.2 SANDBOX WITH UNTRUSTED BYTECODE

2cp3MRc

2cp3MRc

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Defeating ASLR: Easy mode<br />

Call tostring on a C function...<br />

Wow, that was easy<br />

If you have string manipulation<br />

functions in the sandbox, you can<br />

pick the address out<br />

Defense: remove the %p from that<br />

snprintf in the Lua source

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!