-
Notifications
You must be signed in to change notification settings - Fork 62
Open
Description
Specifically, the concepts of signing oracles and authentication oracles would be, I think, insightful for the reader to understand.
These require specific compiler code generation work to try and ensure they do not appear in binaries.
Recent work on upstreaming support for arm64e and pauthabi to LLVM results in these techniques to most likely to be used more widely.
As part of this ticket, we should also consider if we should briefly talk about https://github.com/llvm/llvm-project/blob/main/bolt/docs/BinaryAnalysis.md, as it has modes to find non-protected pac-ret "gadgets" and finding signing and authentication oracles in binaries.
g-kouv and tarcisiofischer
Metadata
Metadata
Assignees
Labels
No labels