mirror of
https://github.com/c64scene-ar/llvm-6502.git
synced 2025-06-24 08:24:33 +00:00
Insert random noops to increase security against ROP attacks (llvm)
A pass that adds random noops to X86 binaries to introduce diversity with the goal of increasing security against most return-oriented programming attacks. Command line options: -noop-insertion // Enable noop insertion. -noop-insertion-percentage=X // X% of assembly instructions will have a noop prepended (default: 50%, requires -noop-insertion) -max-noops-per-instruction=X // Randomly generate X noops per instruction. ie. roll the dice X times with probability set above (default: 1). This doesn't guarantee X noop instructions. In addition, the following 'quick switch' in clang enables basic diversity using default settings (currently: noop insertion and schedule randomization; it is intended to be extended in the future). -fdiversify This is the llvm part of the patch. clang part: D3393 http://reviews.llvm.org/D3392 Patch by Stephen Crane (@rinon) git-svn-id: https://llvm.org/svn/llvm-project/llvm/trunk@225908 91177308-0d34-0410-b5e6-96231b3b80d8
This commit is contained in:
@ -31,8 +31,20 @@ namespace llvm {
|
||||
/// module.
|
||||
class RandomNumberGenerator {
|
||||
public:
|
||||
typedef std::mt19937_64 RNG;
|
||||
typedef RNG::result_type result_type;
|
||||
|
||||
/// Returns a random number in the range [0, Max).
|
||||
uint_fast64_t operator()();
|
||||
result_type operator()();
|
||||
|
||||
// Must define min and max to be compatible with URNG as used by
|
||||
// std::uniform_*_distribution
|
||||
static LLVM_CONSTEXPR result_type min() {
|
||||
return RNG::min();
|
||||
}
|
||||
static LLVM_CONSTEXPR result_type max() {
|
||||
return RNG::max();
|
||||
}
|
||||
|
||||
private:
|
||||
/// Seeds and salts the underlying RNG engine.
|
||||
@ -45,7 +57,7 @@ private:
|
||||
// http://en.cppreference.com/w/cpp/numeric/random/mersenne_twister_engine
|
||||
// This RNG is deterministically portable across C++11
|
||||
// implementations.
|
||||
std::mt19937_64 Generator;
|
||||
RNG Generator;
|
||||
|
||||
// Noncopyable.
|
||||
RandomNumberGenerator(const RandomNumberGenerator &other)
|
||||
|
Reference in New Issue
Block a user