Authors
Ping Chen, Xiao Xing, Bing Mao, Li Xie, Xiaobin Shen, Xinchun Yin
Publication date
2011/3/22
Book
Proceedings of the 6th ACM Symposium on Information, Computer and Communications Security
Pages
20-29
Description
Return-Oriented Programming (ROP) is a technique which leverages the instruction gadgets in existing libraries/executables to construct Turing complete programs. However, ROP attack is usually composed with gadgets which are ending in ret instruction without the corresponding call instruction. Based on this fact, several defense mechanisms have been proposed to detect the ROP malicious code. To circumvent these defenses, Return-Oriented Programming without returns has been proposed recently, which uses the gadgets ending in jmp instruction but with much diversity. In this paper, we propose an improved ROP techniques to construct the ROP shellcode without returns. Meanwhile we implement a tool to automatically construct the real-world Return-Oriented Programming without returns shellcode, which as demonstrated in our experiment can bypass most of the existing ROP defenses.
Total citations
201120122013201420152016201720182019202020212022202316951024352644
Scholar articles
P Chen, X Xing, B Mao, L Xie, X Shen, X Yin - Proceedings of the 6th ACM Symposium on Information …, 2011