Metasploit mailing list archives

Re: ROP support?


From: Peter Van Eeckhoutte <peter.ve () corelan be>
Date: Wed, 18 May 2011 18:57:36 +0200

I guess it would need to be able to generate the gadgets from the correct dlls from within the correct context etc

In theory it should be perfectly possible...  feel free to apply your patches :)




-----Original Message-----
From: Jun Koi [mailto:junkoi2004 () gmail com]
Sent: woensdag 18 mei 2011 18:53
To: Peter Van Eeckhoutte
Cc: framework () spool metasploit com
Subject: Re: [framework] ROP support?

On Thu, May 19, 2011 at 12:38 AM, Peter Van Eeckhoutte
<peter.ve () corelan be> wrote:
Msf won't automagically build a rop chain for you, but if you can build one
yourself and include it in your module, the selected payloads will be more
than happy to execute for you


so Metasploit doesnt make ROP exploit for. this is the (current)
limitation, and will be improved in the future? or there is a reason
for Metasploit not to do that?

thanks,
J



From: framework-bounces () spool metasploit com
[mailto:framework-bounces () spool metasploit com] On Behalf Of Jun Koi
Sent: woensdag 18 mei 2011 18:21
To: framework () spool metasploit com
Subject: [framework] ROP support?



hi,

does current metasploit support ROP-based exploitation? if so, which
exploitation/payload are available?

thanks,
Jun

________________________________
This transmission is intended only for use by the intended recipient(s). If
you are not an intended recipient you should not read, disclose, copy,
circulate or in any other way use the information contained in this
transmission. The information contained in this transmission may be
confidential and/or privileged. If you have received this transmission in
error, please notify the sender immediately and delete this transmission
including any attachments.


This transmission is intended only for use by the intended recipient(s).  If you are not an intended recipient you 
should not read, disclose, copy, circulate or in any other way use the information contained in this transmission.  The 
information contained in this transmission may be confidential and/or privileged.  If you have received this 
transmission in error, please notify the sender immediately and delete this transmission including any attachments.
_______________________________________________
https://mail.metasploit.com/mailman/listinfo/framework


Current thread: