about summary refs log tree commit diff
path: root/frida_mode/test/js/GNUmakefile
blob: c702ad985cefa982c8e27ef4d44295b99b4b3af1 (plain) (blame)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
PWD:=$(shell pwd)/
ROOT:=$(PWD)../../../
BUILD_DIR:=$(PWD)build/
TEST_DATA_DIR:=$(BUILD_DIR)in/
TEST_DATA_FILE:=$(TEST_DATA_DIR)in

TESTINSTBIN:=$(BUILD_DIR)test
TESTINSTSRC:=$(PWD)test.c

TESTINSTBIN2:=$(BUILD_DIR)test2
TESTINSTSRC2:=$(PWD)test2.c

AFLPP_DRIVER_DUMMY_INPUT:=$(BUILD_DIR)dummy
QEMU_OUT:=$(BUILD_DIR)qemu-out
FRIDA_OUT:=$(BUILD_DIR)frida-out

ifeq "$(shell uname)" "Darwin"
AFL_PRELOAD=/System/Library/Frameworks/CoreFoundation.framework/CoreFoundation
endif

.PHONY: all 32 clean qemu frida debug

all: $(TESTINSTBIN) $(TESTINSTBIN2)
	make -C $(ROOT)frida_mode/

32:
	CFLAGS="-m32" LDFLAGS="-m32" ARCH="x86" make all

$(BUILD_DIR):
	mkdir -p $@

$(TEST_DATA_DIR): | $(BUILD_DIR)
	mkdir -p $@

$(TEST_DATA_FILE): | $(TEST_DATA_DIR)
	echo -n "000" > $@

$(TESTINSTBIN): $(TESTINSTSRC) | $(BUILD_DIR)
	$(CC) $(CFLAGS) $(LDFLAGS) -o $@ $<

$(TESTINSTBIN2): $(TESTINSTSRC2) | $(BUILD_DIR)
	$(CC) $(CFLAGS) $(LDFLAGS) -o $@ $<

$(AFLPP_DRIVER_DUMMY_INPUT): | $(BUILD_DIR)
	dd if=/dev/zero bs=1048576 count=1 of=$@

clean:
	rm -rf $(BUILD_DIR)

frida_js_main: $(TESTINSTBIN) $(TEST_DATA_FILE) $(AFLPP_DRIVER_DUMMY_INPUT)
	AFL_PRELOAD=$(AFL_PRELOAD) \
	AFL_FRIDA_JS_SCRIPT=main.js \
	$(ROOT)afl-fuzz \
		-D \
		-O \
		-i $(TEST_DATA_DIR) \
		-o $(FRIDA_OUT) \
		-t 10000+ \
		-- \
			$(TESTINSTBIN) $(AFLPP_DRIVER_DUMMY_INPUT)

frida_js_fuzz: $(TESTINSTBIN) $(TEST_DATA_FILE) $(AFLPP_DRIVER_DUMMY_INPUT)
	AFL_PRELOAD=$(AFL_PRELOAD) \
	AFL_FRIDA_JS_SCRIPT=fuzz.js \
	$(ROOT)afl-fuzz \
		-D \
		-O \
		-i $(TEST_DATA_DIR) \
		-o $(FRIDA_OUT) \
		-t 10000+ \
		-- \
			$(TESTINSTBIN) $(AFLPP_DRIVER_DUMMY_INPUT)

frida_js_entry: $(TESTINSTBIN) $(TEST_DATA_FILE)
	AFL_PRELOAD=$(AFL_PRELOAD) \
	AFL_FRIDA_JS_SCRIPT=entry.js \
	$(ROOT)afl-fuzz \
		-D \
		-O \
		-i $(TEST_DATA_DIR) \
		-o $(FRIDA_OUT) \
		-t 10000+ \
		-- \
			$(TESTINSTBIN) @@

frida_js_replace: $(TESTINSTBIN) $(TEST_DATA_FILE)
	AFL_FRIDA_JS_SCRIPT=replace.js \
	$(ROOT)afl-fuzz \
		-D \
		-O \
		-i $(TEST_DATA_DIR) \
		-o $(FRIDA_OUT) \
		-- \
			$(TESTINSTBIN) @@

frida_js_patch: $(TESTINSTBIN2) $(TEST_DATA_FILE)
	AFL_FRIDA_JS_SCRIPT=patch.js \
	$(ROOT)afl-fuzz \
		-D \
		-O \
		-i $(TEST_DATA_DIR) \
		-o $(FRIDA_OUT) \
		-- \
			$(TESTINSTBIN2) @@

frida_js_stalker: $(TESTINSTBIN2) $(TEST_DATA_FILE)
	AFL_FRIDA_JS_SCRIPT=stalker.js \
	$(ROOT)afl-fuzz \
		-D \
		-O \
		-i $(TEST_DATA_DIR) \
		-o $(FRIDA_OUT) \
		-- \
			$(TESTINSTBIN2) @@

debug: $(TEST_DATA_FILE)
	gdb \
		--ex 'set environment LD_PRELOAD=$(ROOT)afl-frida-trace.so' \
		--ex 'set environment AFL_FRIDA_JS_SCRIPT=entry.js' \
		--ex 'set disassembly-flavor intel' \
		--args $(TESTINSTBIN) $(TEST_DATA_FILE)

strace: $(TEST_DATA_FILE)
	LD_PRELOAD=$(ROOT)afl-frida-trace.so \
	AFL_FRIDA_JS_SCRIPT=entry.js \
	strace $(TESTINSTBIN) $(TEST_DATA_FILE)