google / buzzer

Apache License 2.0
411 stars 28 forks source link

add the stack corruption statregy #34

Closed thatjiaozi closed 1 year ago

thatjiaozi commented 1 year ago

The idea was to use the function skb_load_bytes relative to corrupt a function pointer stored in the ebpf stack.

I let it run for almost a week and I found no crashes, sadly, which means that either the strategy needs tuning or we are barking at the wrong tree