Tavis Ormandy
LoadLibrary e hlokomela ho kenya laeborari mohopolong le ho kenya matšoao a seng a ntse a le teng, e fana ka ts'ebeliso ea Linux ka API ea setaele se thellang. Khoutu ea plug-in e ka lokisoa ka gdb, ASAN le Valgrind. Hoa khoneha ho lokisa khoutu e ka phethisoang nakong ea ts'ebetso ka ho hokahanya li-hook le ho sebelisa li-patches (runtime patching). E ts'ehetsa ho ts'oaroa le ho phutholoha bakeng sa C++.
Sepheo sa morero ke ho hlophisa liteko tse ka sebelisoang ka mokhoa o hlakileng le tse sebetsang hantle tsa lilaebrari tsa DLL tikolohong e thehiloeng ho Linux. Ho Windows, tlhahlobo ea phokotso le tšireletso ha e sebetse hantle 'me hangata e hloka ho sebelisa mohlala o ikhethileng oa Windows, haholo ha o leka ho sekaseka lihlahisoa tse rarahaneng joalo ka software ea antivirus e atileng ka har'a kernel le sebaka sa basebelisi. U sebelisa LoadLibrary, bafuputsi ba Google ba ntse ba batlana le bofokoli ho li-codec tsa video, li-scanner tsa vaerase, lilaebrari tsa decompression ea data, li-decoder tsa litšoantšo, jj.
Mohlala, ka thuso ea LoadLibrary re khonne ho kenya enjine ea antivirus ea Windows Defender ho sebetsa Linux. Boithuto ba mpengine.dll, e leng motheo oa Windows Defender, bo entse hore ho khonehe ho sekaseka palo e kholo ea li-processor tse tsoetseng pele bakeng sa lifomate tse fapaneng, li-emulators tsa sistimi ea lifaele le bafetoleli ba puo ba ka fanang ka li-vectors bakeng sa.
LoadLibrary e ne e boetse e sebelisetsoa ho khetholla
Source: opennet.ru