Browse Source

capstone isn't disassembling the whole block, dumb heuristics for growth

master
JoYo 3 years ago
parent
commit
ad6277c0ee
  1. 13
      sins/mutation.py

13
sins/mutation.py

@ -55,13 +55,18 @@ def generation(queue: Queue, shellcode: bytes):
def growth(*, shellcode: bytes, length: int) -> bytes:
for mnemonic, op_str in disasm(shellcode):
if mnemonic == 'nop':
return bytes(shellcode)
if length <= len(shellcode):
return bytes(shellcode)
opcodes = disasm(shellcode)
if len(shellcode) > len(opcodes) * 8:
return bytes(shellcode)
for mnemonic, op_str in opcodes:
if mnemonic == 'nop':
return bytes(shellcode)
shellcode = bytearray(shellcode)
shellcode += b'\x90'

Loading…
Cancel
Save