m/ ROP and ROLL m/ presented at Kiwicon 2012

by Antic0de ,

Tags: Security

Summary : "What's the point in sending your latest 0day exploit module down the wires when the shellcode decoder stub can be generically discovered. Generic ROP chains extenuate this issue as they end up becoming lengths of static DWORDS that can be easily detected through network monitors or AV signatures.
ROP and ROLL is a proof of concept demonstration of ROP chain mutation or modification in an attempt to remove likelihood of easy detection and the loss of your latest java bug."