Skip to content
KitploitKITPLOIT
ツールエクスプロイトブログ
Log in
提出
ツールエクスプロイトブログ
提出

ハッキング、侵入テスト、サイバーセキュリティツールをあなたのセキュリティアーセナルに!

Kitploitはハッキング、サイバーセキュリティ、ペネトレーションテストのツールディレクトリです。最新のプロジェクトアップデートを見つけて、脆弱性の発見、システム分析、テストの自動化、セキュリティの強化を行いましょう。

··フィード·お問い合わせ·プライバシー·© 2026 Kitploit

ツールディレクトリ

カテゴリ

すべてのカテゴリを見る
Loading categories
heaphopper — HeapHopperは、ヒープ実装のための有界モデル検査フレームワークです。 | Kitploit
ツール/GitHubGitHub/angr/heaphopper
脆弱性分析ファジングバイナリ解析論文と研究学習と教育
GitHubangr/heaphopper

heaphopper

HeapHopperは、ヒープ実装のための有界モデル検査フレームワークです。

リポジトリを見る
228171726日前Kitploit レビュー済み

人気

すべて見る →

コミュニティで最も使われているツールを見つけましょう。

すべてのツールを探索

ツールコレクションを閲覧

すべてのツールを見る →
ウェブサイト
共有

heaphopper

Build Status License

HeapHopper は、ヒープ実装のための有界モデル検査フレームワークです。

概要

Overview

セットアップ

sudo apt update && sudo apt install build-essential python3-dev virtualenvwrapper
git clone https://github.com/angr/heaphopper.git && cd ./heaphopper
mkvirtualenv -ppython3 heaphopper
pip install -e .

必要なパッケージ

build-essential python3-dev virtualenvwrapper

必要な Python パッケージ

ana angr cle psutil pyelftools pyyaml

例

# 順列の zoo を生成
./heaphopper_client.py gen -c analysis.yaml

#  インスタンスのトレース
make -C tests
./heaphopper_client.py  trace -c tests/how2heap_fastbin_dup/analysis.yaml -b tests/how2heap_fastbin_dup/fastbin_dup.bin

# PoC の生成
./heaphopper_client.py poc -c tests/how2heap_fastbin_dup/analysis.yaml -r tests/how2heap_fastbin_dup/fastbin_dup.bin-result.yaml -d tests/how2heap_fastbin_dup/fastbin_dup.bin-desc.yaml -s tests/how2heap_fastbin_dup/fastbin_dup.c -b tests/how2heap_fastbin_dup/fastbin_dup.bin

# テスト
## ソースを表示
cat tests/how2heap_fastbin_dup/fastbin_dup.c
## テストを実行
tests/test_heaphopper.py
## PoC ソースを表示
cat tests/how2heap_fastbin_dup/pocs/malloc_non_heap/fastbin_dup.bin/poc_0_0.c
## PoC を実行
cd tests
./run_poc.sh tests/how2heap_fastbin_dup/pocs/malloc_non_heap/fastbin_dup.bin/bin/poc_0_0.bin

論文

この研究は 第27回 USENIX Security Symposium で発表されました。

論文は こちら から読むことができます。

引用:

@inproceedings {heaphopper,
author = {Eckert, Moritz and Bianchi, Antonio and Wang, Ruoyu and Shoshitaishvili, Yan and Kruegel, Christopher and Vigna, Giovanni},
title = {HeapHopper: Bringing Bounded Model Checking to Heap Implementation Security},
booktitle = {27th {USENIX} Security Symposium ({USENIX} Security 18)},
year = {2018},
address = {Baltimore, MD},
url = {https://www.usenix.org/conference/usenixsecurity18/presentation/eckert},
publisher = {{USENIX} Association},
}
ツールをダウンロード