1
0
Fork 0
out-of-tree kernel {module, exploit} development tool
 
 
 
 
Go to file
dump_stack() b7624f0d28
Implements query for build/insmod/test logs
2019-08-13 23:54:45 +00:00
config Move to fmt.Errorf 2018-12-10 02:45:17 +00:00
examples Print kernel config skeleton to stdout 2018-11-28 23:53:47 +00:00
qemu Rename qemu package 2019-02-02 21:33:27 +00:00
tools Typo 2019-07-12 17:11:16 +00:00
.gitignore Remove snap support 2018-12-02 15:33:13 +00:00
.travis.yml Revert "CI: Test also without go modules to catch upstream API changes" 2019-06-11 00:14:23 +00:00
LICENSE Change license to GNU AGPLv3 2018-10-08 20:54:18 +00:00
README.md Add Codacy badge 2019-06-20 10:11:30 +00:00
bootstrap.config.go Implements bootstrap, fixes #3 2018-12-01 17:34:57 +00:00
bootstrap.go Improve logging 2018-12-02 03:13:18 +00:00
db.go Implements query for build/insmod/test logs 2019-08-13 23:54:45 +00:00
debug.go Use same version of aurora everywhere 2019-06-10 18:50:30 +00:00
gen.go Move upstream to code.dumpstack.io 2019-02-02 21:25:09 +00:00
go.mod Use same version of aurora everywhere 2019-06-10 18:50:30 +00:00
go.sum Use same version of aurora everywhere 2019-06-10 18:50:30 +00:00
kernel.go Implements parameter "--max=X" for autogen 2019-08-12 22:58:47 +00:00
log.go Implements query for build/insmod/test logs 2019-08-13 23:54:45 +00:00
main.go Implements query for build/insmod/test logs 2019-08-13 23:54:45 +00:00
pew.go Implements basic logs query, success rate calculation 2019-08-13 23:33:52 +00:00
pew_test.go Use go timers for kill docker by timeout, fixes #12 2018-12-08 02:53:29 +00:00

README.md

Codacy Badge Build Status Go Report Card

out-of-tree

out-of-tree kernel {module, exploit} development tool

Screenshot

Requirements

Qemu, docker and golang is required.

Also do not forget to set GOPATH and PATH e.g.:

$ echo 'export GOPATH=$HOME' >> ~/.bashrc
$ echo 'export PATH=$PATH:$HOME/bin' >> ~/.bashrc
$ source ~/.bashrc

Gentoo

# emerge app-emulation/qemu app-emulation/docker dev-lang/go

macOS

$ brew install go qemu
$ brew cask install docker

Fedora

$ sudo dnf install go qemu moby-engine

Also check out docker post-installation steps.

Build from source

$ go get -u code.dumpstack.io/tools/out-of-tree
$ out-of-tree bootstrap

Then you can check it on kernel module example:

$ cd $GOPATH/src/code.dumpstack.io/tools/out-of-tree/examples/kernel-module
$ out-of-tree kernel autogen # generate kernels based on .out-of-tree.toml
$ out-of-tree pew

Examples

Run by absolute path

$ out-of-tree --path /path/to/exploit/directory pew

Test only with one kernel:

$ out-of-tree pew --kernel='Ubuntu:4.10.0-30-generic'

Run debug environment:

$ out-of-tree debug --kernel='Ubuntu:4.10.0-30-generic'

Test binary module/exploit with implicit defined test ($BINARY_test)

$ out-of-tree pew --binary /path/to/exploit

Test binary module/exploit with explicit defined test

$ out-of-tree pew --binary /path/to/exploit --test /path/to/exploit_test

Guess work kernels:

$ out-of-tree pew --guess

Use custom kernels config

$ out-of-tree --kernels /path/to/kernels.toml pew

Generate all kernels

$ out-of-tree kernel genall --distro Ubuntu --ver 16.04

Development

Read Qemu API.

Generate images

$ cd $GOPATH/src/code.dumpstack.io/tools/out-of-tree/tools/qemu-debian-img/
$ docker run --privileged -v $(pwd):/shared -e IMAGE=/shared/ubuntu1404.img -e RELEASE=trusty -t gen-ubuntu1804-image
$ docker run --privileged -v $(pwd):/shared -e IMAGE=/shared/ubuntu1604.img -e RELEASE=xenial -t gen-ubuntu1804-image