|
|
|
|
|
by Genbox
1149 days ago
|
|
I'm not making general claims about the use of memory exploitation - only questioning the statement that they are not widely used. With more than 500 forensics cases with my name on it, and a substantial amount of them being RCE based, I'd say it is more than just guessing. There is no need to spend time on developing a exploit when you can find hundreds new ones every month on GitHub. DEP and ASLR are also not used in embedded devices where memory management in the firmware is atrocious. |
|
The comment you were replying to is talking about the majority if compromises. Citing your case stats to argue against that is a bit weird.