06.11.2015 Views

Practical SMEP bypass techniques on Linux

RUXCON15-Vitaly

RUXCON15-Vitaly

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

et2usr<br />

• <strong>Linux</strong> - kernel space <strong>on</strong> behalf of user space<br />

model<br />

• User space processes cannot access kernel<br />

space<br />

• Kernel space can access user space<br />

• ret2usr - redirect corrupted code or data ptr to<br />

code or data in user space

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!