diff --git a/meetings.md b/meetings.md index ec4bf844d..1e7f9ed2d 100644 --- a/meetings.md +++ b/meetings.md @@ -1,14 +1,16 @@ # 02-28 Daily supervisor: Dyon Goal: Breaking KASLR through TLB-based side channel attack -Status: +Status: Deciding on which part exactly to choose, hardware access today Progress: - - Target platform: i7-8650U Kernel 6.8 + - Target: i7-8650U Kernel 6.8 - First idea: Try using CONFIG_STRICT_MODULE_RWX (D1) - but: maybe further input needed here which one is desireable target - strict module rwx => can leak heap (excluding cred and less reliable pipe-buffer) and page tables - virtual heap => can leak heap (including cred) reliably + - Go with heap => cred one of the most interesting - virtual stack => can leak kernel stack + - Forgot about research proposal, message herbert # 02-21 Daily supervisor: Dyon