Skip to content
KitploitKITPLOIT
أدواتالمدونة
إرسال
أدواتالمدونة
إرسال

أدوات الاختراق واختبار الاختراق والأمن السيبراني لترسانتك الأمنية!

Kitploit هو دليل لأدوات الاختراق والأمن السيبراني واختبار الاختراق. اكتشف آخر تحديثات المشاريع للعثور على الثغرات وتحليل الأنظمة وأتمتة الاختبارات وتعزيز أمنك.

··الخلاصات·اتصال·الخصوصية·© 2026 Kitploit

دليل الأدوات

الفئات

عرض جميع الفئات
Loading categories
heaphopper — HeapHopper هو إطار عمل للتحقق من النموذج المحدود لتطبيقات الكومة. | Kitploit
أدوات/GitHubGitHub/angr/heaphopper
تحليل الثغرات الأمنيةالاختبار العشوائيتحليل الملفات الثنائيةالأوراق والأبحاثالتعلم والتعليم
GitHubangr/heaphopper

heaphopper

HeapHopper هو إطار عمل للتحقق من النموذج المحدود لتطبيقات الكومة.

عرض المستودع
228174منذ 7 أيامتمت المراجعة من قبل Kitploit
الموقع الإلكتروني

الأكثر شعبية

عرض الكل →

اكتشف الأدوات الأكثر استخدامًا من قبل مجتمعنا.

استكشف جميع الأدوات

تصفح مجموعتنا من الأدوات

عرض جميع الأدوات →
مشاركة

heaphopper

Build Status License

HeapHopper هو إطار عمل للتحقق النموذجي المحدود (bounded model checking) لتطبيقات الكومة (Heap-implementations).

نظرة عامة

Overview

الإعداد

root@kitploit:~
sudo apt update && sudo apt install build-essential python3-dev virtualenvwrapper
git clone https://github.com/angr/heaphopper.git && cd ./heaphopper
mkvirtualenv -ppython3 heaphopper
pip install -e .

الحزم المطلوبة

root@kitploit:~
build-essential python3-dev virtualenvwrapper

حزم Python المطلوبة

root@kitploit:~
ana angr cle psutil pyelftools pyyaml

أمثلة

root@kitploit:~
# توليد مجموعة من التباديل (zoo of permutations)
./heaphopper_client.py gen -c analysis.yaml

#  تتبع مثيل (Trace instance)
make -C tests
./heaphopper_client.py  trace -c tests/how2heap_fastbin_dup/analysis.yaml -b tests/how2heap_fastbin_dup/fastbin_dup.bin

# توليد إثبات المفهوم (PoC)
./heaphopper_client.py poc -c tests/how2heap_fastbin_dup/analysis.yaml -r tests/how2heap_fastbin_dup/fastbin_dup.bin-result.yaml -d tests/how2heap_fastbin_dup/fastbin_dup.bin-desc.yaml -s tests/how2heap_fastbin_dup/fastbin_dup.c -b tests/how2heap_fastbin_dup/fastbin_dup.bin

# الاختبارات
## عرض المصدر
cat tests/how2heap_fastbin_dup/fastbin_dup.c
## تشغيل الاختبارات
tests/test_heaphopper.py
## عرض مصدر إثبات المفهوم
cat tests/how2heap_fastbin_dup/pocs/malloc_non_heap/fastbin_dup.bin/poc_0_0.c
## تشغيل إثبات المفهوم
cd tests
./run_poc.sh tests/how2heap_fastbin_dup/pocs/malloc_non_heap/fastbin_dup.bin/bin/poc_0_0.bin

النشر

تم نشر هذا العمل في ندوة USENIX الأمنية السابعة والعشرين.

يمكنك قراءة الورقة البحثية هنا.

الاستشهاد:

root@kitploit:~
@inproceedings {heaphopper,
author = {Eckert, Moritz and Bianchi, Antonio and Wang, Ruoyu and Shoshitaishvili, Yan and Kruegel, Christopher and Vigna, Giovanni},
title = {HeapHopper: Bringing Bounded Model Checking to Heap Implementation Security},
booktitle = {27th {USENIX} Security Symposium ({USENIX} Security 18)},
year = {2018},
address = {Baltimore, MD},
url = {https://www.usenix.org/conference/usenixsecurity18/presentation/eckert},
publisher = {{USENIX} Association},
}
تنزيل الأداة