

Join the discussion
Write your take first — we'll ask for email only when you're ready to publish.
- Hacker News
- Can a process loaded this way be reverified once loaded?by westurner
- > So we load the ELF manually
Hold it right there. You mean if you've got a thread and a chunk of memory, you can use it? Who knew, except everyone?
by tosti - This looks to me like you're copying the contents of an ELF binary from userspace memory into a kernel keyring, and then immediately copying it back from the kernel keyring to userspace memory, followed by userland exec the usual way. What's the point of the keyring steps, rather than just doing userland exec alone?by josephcsible