13.02.2017 Views

Talos Vulndev

Harnessing%20Intel%20Processor%20Trace%20on%20Windows%20for%20Vulnerability%20Discovery%20-%20rjohnson

Harnessing%20Intel%20Processor%20Trace%20on%20Windows%20for%20Vulnerability%20Discovery%20-%20rjohnson

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Windows Evolutionary Fuzzing<br />

• Started research into this area in 2015<br />

– High Performance Fuzzing<br />

– Go Speed Tracer<br />

• Windows Software primarily distributed as binaries<br />

– High speed binary code coverage required<br />

• Seemed like a good opportunity to use Intel Processor Trace<br />

– First prototyped on Linux using perf subsystem<br />

– Demoed at Ruxcon 2015<br />

• Lack of a usable driver lead to partnership with Andrea

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!