Joined February 2010
Replying to @msolnik
@msolnik @marcan42 @Sh1n0d4 @subgraph sorry to disappoint your wild fantasies but we don't do BDSM.
1
1
@marcan42 @Sh1n0d4 @subgraph that was him and his turf, i didn't, #pax is available.
1
@marcan42 @Sh1n0d4 @subgraph they don't fit a tweet. wrong medium.
@marcan42 @Sh1n0d4 @subgraph pretty much every statement you made about the SO plugin, our work, etc. or you're just clueless. your pick.
Replying to @0xFrostyyy
@Sh1n0d4 @subgraph @grsecurity @marcan42 it wasn't about the bugreport, but his subsequent *lies* and the resulting noise.
1
2
Replying to @chrisrohlf
@chrisrohlf length of code doesn't really matter, RAP works fine for c++ thunks too ;).
Replying to @chrisrohlf
@chrisrohlf how would the exact hash generation method influence whether you can redirect to a gaJIT bypassing the checks?
Replying to @chrisrohlf
@chrisrohlf RAP doesn't care about aligned/unaligned insns. so i still don't see how you'd enter a gaJIT sequence.
Replying to @chrisrohlf
@chrisrohlf how would you execute a gaJIT without violating a RAP-like defense?
new grsecurity blog post on today's Linux kernel JIT spray attack news: forums.grsecurity.net/viewto…
49
51
@GCsVentures so it works on the configs i tested it, let me know if anything breaks (will be in the next patch).
1
1
Replying to @GCsVentures
@GCsVentures it's WIP, but after fixing the C side, i'm not sure what will be left and how fixable that is.
1
1
spender's prepared a small FAQ on RAP at grsecurity.net/rap_faq.php .
1
56
55
Replying to @copumpkin
@copumpkin that said, i've done enough of that work to be able to have a RAP protected chromium since 2014AD :).
1
2
Replying to @copumpkin
@copumpkin the bigger issue will be fixing all the bad fptr casts that the plugin will flag for you but can't fix itself.
1
Replying to @copumpkin
@copumpkin i developed it under gentoo but any distro will work that allows passing cflags/etc to packages.
1
Replying to @rootkovska
@rootkovska so for the kernel it's GPLv2, the commercial version GPLv3 (to meet the eligible compilation condition needed for userland).
1
Replying to @rootkovska
@rootkovska as the copyright holder on my code i get to choose the license ;). there're circumstances that steer that decision of course.
2
2