Blog | G5 Cyber Security

Vulnerability Spotlight: Hopper Disassembler ELF Section Header Size Code Execution

TalosTalos has identified an exploitable out-of-bounds write vulnerability in the ELF Section Header parsing functionality of Hopper. Hopper is a reverse engineering tool for Mac, Linux, Windows and iOS. A malicious threat actor could craft an ELF file with specific section headers to trigger this vulnerability. This type of exploit can also be used as an anti-analysis measure in an attempt to defeat sandboxes and automated disassembly. Talos has released rules that detect attempts to exploit this vulnerability to protect our customers.”]

Source: https://blog.talosintelligence.com/2016/10/hopper.html

Exit mobile version