blob: a0ffd028d3961cabf598fbc27d7782b5cc22bfdc (
plain) (
blame)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
|
#include "frida-gumjs.h"
#include "debug.h"
#include "entry.h"
#include "instrument.h"
#include "persistent.h"
#include "ranges.h"
#include "stalker.h"
#include "stats.h"
#include "util.h"
extern void __afl_manual_init();
guint64 entry_point = 0;
gboolean entry_reached = FALSE;
static void entry_launch(void) {
OKF("Entry point reached");
__afl_manual_init();
/* Child here */
instrument_on_fork();
stats_on_fork();
}
void entry_config(void) {
entry_point = util_read_address("AFL_ENTRYPOINT");
}
void entry_init(void) {
OKF("entry_point: 0x%016" G_GINT64_MODIFIER "X", entry_point);
}
void entry_start(void) {
if (entry_point == 0) { entry_launch(); }
}
static void entry_callout(GumCpuContext *cpu_context, gpointer user_data) {
UNUSED_PARAMETER(cpu_context);
UNUSED_PARAMETER(user_data);
entry_launch();
}
void entry_prologue(GumStalkerIterator *iterator, GumStalkerOutput *output) {
UNUSED_PARAMETER(output);
OKF("AFL_ENTRYPOINT reached");
if (persistent_start == 0) {
entry_reached = TRUE;
ranges_exclude();
stalker_trust();
}
gum_stalker_iterator_put_callout(iterator, entry_callout, NULL, NULL);
}
|