Joined February 2010
compiler != frontend, as you can clearly see in the released version too. and it is the proper level :).
it's exactly the same as normal fptr checks just at a different offset for the ancestor method hash.
i'll be the first one to switch to it if it works as return address protection is the slower part of RAP.
1
1
1
while the shadow stack *design* is better on paper, it may not be implementable in practice. cf. the academic work.
since you asked us about Intel's CET: forums.grsecurity.net/viewto…
3
109
97
Replying to @_d3f4ult @marcan42
a blog is an online thing. and @grsecurity isn't locked down but is a mere placeholder now.
so you have time for twitter but not irc? the lies just keep coming, aren't they.
Replying to @_d3f4ult @marcan42
yeah, he's so hiding that he'll do the keynote at @sstic next week and had time for only 2 blogs since ;).
1
2
oh you mean how you waited for me to respond to your diatribes? sounds like another lame excuse.
did you say a word? then how would anyone know? everyone join #pax on OFTC now!
1
not only butthurt but a lying coward who still didn't dare to face the truth on irc. i'm still waiting!
1
Replying to @qwertyoruiopz
editing TTE = data-only attack -> out of scope for CFI schemes. protecting against them has been on my agenda of course.
compilation is not a problem per se, fixing all the incorrect fptr casts is (FYI my chromium fix touches 276 files).
the PoC proves it's not none. can you answer my question for real?
1
Replying to @comex
so the past 15 years didn't benefit the masses? that's 15 years more than you spent on securing the masses.
1
Replying to @comex
so do we care about securing the masses or not? make up your mind.
1
Replying to @comex
we already did a thousand times more to secure the masses than you ever have or will. but bitching is easier than building stuff.
1
1
4
@marcan42 @msolnik @Sh1n0d4 @subgraph i didn't agree with his decision either but i find that no excuse for yours.
Replying to @msolnik
@msolnik @marcan42 @Sh1n0d4 @subgraph increased compared to what? can you *quantify* it?