Dataset : Software
Artifacts for "Synthesis of code-reuse attacks from p-code programs"
- Documentation:
-
We present a new method for automatically synthesizing code-reuse attacks—for example, using Return Oriented Programming—based on mechanized formal logic. Our method reasons about machine code via abstraction to the p-code intermediate language of Ghidra, a well-established software reverse-engineering framework. This allows it to be applied to binaries of essentially any architecture, and provides certain technical advantages. We define a formal model of a fragment of p-code in propositional logic, enabling analysis by automated reasoning algorithms. We then synthesize code-reuse attacks by identifying selections of gadgets that can emulate a given p-code reference program. This enables our method to scale well, in both reference program and gadget library size, and facilitates integration with external tools. Our method matches or exceeds the success rate of state-of-the-art ROP chain synthesis methods while providing improved runtime performance.
Our artifacts are composed of four main folders:
- jingle: The implementation of our logical modeling of p-code.
- crackers: The implementation of crackers, our algorithm for synthesizing code-reuse attacks.
- crackers_evaluation: The code and data for our evaluation of crackers and the other ROP tools, as well as our ablation study. This contains our raw evaluation data, the tools used to produce our graphs and tables, and the code needed to re-run the entire evaluation.
- dnsmasq_poc: A case study demonstrating the usage of crackers in the exploitation of a (simple) real-world vulnerability.
Subsequent development of the two software libraries in this artifact will occur here:
- jingle: https://github.com/toolCHAINZ/jingle
- crackers: https://github.com/toolCHAINZ/crackers
Actions
Access Document
- Files:
-
-
(Version of record, zip, 1.5MB, Terms of use)
-
- Publisher copy:
- 10.5281/zenodo.14738161
Authors
- Publisher:
- University of Oxford
- Publication date:
- 2025
- DOI:
- Language:
-
English
- Subtype:
-
Software
- Pubs id:
-
2080412
- Local pid:
-
pubs:2080412
- Deposit date:
-
2025-01-25
Terms of use
- Copyright holder:
- DenHoed and Melham
- Copyright date:
- 2025
- Rights statement:
- © 2025 Mark DenHoed and Thomas Melham.
If you are the owner of this record, you can report an update to it here: Report update to this record