Learn, hack!

Hacking and security documentation: slides, papers, video and audio recordings. All in high-quality, daily updated, avoiding security crap documents. Spreading hacking knowledge, for free, enjoy. Follow on .

Prospecting for Rootite: More Code Coverage, More Bugs, Less Wasted Effort

Type
Slides
Tags
code analysis, code auditing
Authors
Ben Nagy
Event
Ruxcon 2010
Indexed on
Mar 26, 2013
URL
http://www.ruxcon.org.au/assets/Presentations/ben-nagy.prospecting-for-rootite.2010.pdf
File name
ben-nagy.prospecting-for-rootite.2010.pdf
File size
3.8 MB
MD5
b20ab7ce1167f24842ab9c1f6adbfd1b
SHA1
fa28576a08debdbc6c53a2929034ceb25a2ffc54

Everyone wants better code coverage for their fuzzers. Work in the field has ranged from the extremely theoretical to the downright impossible. Recently, Microsoft and Charlie Miller both released research on using run-tracing to select a set of templates, in such a way that maximum code coverage is achieved. Trouble is, Microsoft has the advantage of source code access, and Charlie is using Valgrind. The bad news for people fuzzing Windows files is that there have been no viable options for closed source targets. Well, now there are. We're releasing some scripts to mine search engines for templates, a scriptable run-tracer that doesn't suck, and the post-processing backend to select the minimal template set. We'll also drop some interesting fuzzing metrics based on our internal use of Prospector and probably an 0day or two.

About us

Secdocs is a project aimed to index high-quality IT security and hacking documents. These are fetched from multiple data sources: events, conferences and generally from interwebs.

Statistics

Serving 8166 documents and 531.0 GB of hacking knowledge, indexed from 2419 authors from 163 security conferences.

Contribute

To support this site and keep it alive, you can click on the buttons below. Any help is really appreciated! This service is provided for free, but real money is needed to pay bills.

Flattr this Click here to lend your support to: Keep live SecDocs for an year and make a donation at www.pledgie.com !