|
|
|
|
|
by cahoot_bird
547 days ago
|
|
Super interesting. At one point thought control flow guard + DEP/ASLR was suppose to prevent this stuff, guess it can't be prevented nearly completely by now. Sounds like this took a lot of work to figure out, well done. Any comment on reporting to Microsoft or perhaps motivation for this research? |
|
Obviously this is hard, so post-exploit mitigations will likely continue to still make things harder for attackers for quite a while at least.