Shellcode编译错误

Shellcode compiling errors

我编写了汇编代码来测试 shellcode 示例。 但是,我在编译汇编代码时出现了以下错误。 我也尝试将汇编代码编译为 .S.s。 另外,我尝试编译为 "gcc -nostdlib -static shellcode.s -o shellcode-elf""as shellcode.s -o shellcode.o" 也是。

谁能帮我在 Ubuntu 上编译简单的汇编代码?(使用 mac M1 芯片)

uname -a :

Linux ubuntu 5.8.0-49-generic #55~20.04.1-Ubuntu SMP Fri Mar 26 01:00:41 UTC 2021 aarch64 aarch64 aarch64 GNU/Linux

错误:

shellcode.s: Assembler messages:
shellcode.s:6: Error: operand 1 must be an integer register -- `mov rax,59'
shellcode.s:7: Error: unknown mnemonic `lea' -- `lea rdi,[rip+binsh]'
shellcode.s:8: Error: operand 1 must be an integer register -- `mov rsi,0'
shellcode.s:9: Error: operand 1 must be an integer register -- `mov rdx,0'
shellcode.s:10: Error: unknown mnemonic `syscall' -- `syscall'

汇编代码:

global _start
_start:
xor %eax, %eax
xor %edx, %edx
push %eax
push [=12=]x68732f2f
push [=12=]x6e69622f
mov %esp, %ebx
push %edx
push %ebx
mov %esp, %ecx
movb [=12=]x0B, %al
int [=12=]x80

正如评论中指出的那样,您可以 compile/execute 使用交叉编译器在 AArch64 Linux 系统上针对 x86-64 Linux 的程序和一个模拟器,例如 qemu-user.

请注意,该程序不会在本机执行。然而,这应该足以满足您的需求。

此示例基于 Aarch64 Ubuntu 20.04 系统构建:

uname -a
Linux orangepipc2 5.10.21-sunxi64 #21.02.3 SMP Mon Mar 8 00:45:13 UTC 2021 aarch64 aarch64 aarch64 GNU/Linux

# install the cross-compiler and qemu-user
sudo apt-get install gcc-10-multilib-x86-64-linux-gnu
sudo apt-get install qemu-user

创建 hello.s(致谢:https://cs.lmu.edu/~ray/notes/gasexamples/),因为您提供的代码不正确 assemble。指出为什么超出当前答案的范围 - 一旦安装了 x86-64 交叉编译器,您应该能够自己修复代码。

hello.s:
       .global main
       .text
main:
        # write(1, message, 13)
        mov     , %rax                # system call 1 is write
        mov     , %rdi                # file handle 1 is stdout
        mov     $message, %rsi          # address of string to output
        mov     , %rdx               # number of bytes
        syscall                         # invoke operating system to do the write

        # exit(0)
        mov     , %rax               # system call 60 is exit
        xor     %rdi, %rdi              # we want return code 0
        syscall                         # invoke operating system to exit
message:
        .ascii  "Hello, world\n"

/usr/bin/x86_64-linux-gnu-gcc-10 -static  -o hello hello.s
file hello
hello: ELF 64-bit LSB executable, x86-64, version 1 (GNU/Linux), statically linked, BuildID[sha1]=2fb401aedb8c9593ea93c0c2dd59b91f11b57b10, for GNU/Linux 3.2.0, not stripped

qemu-x86_64  hello
Hello, world