Bypassing Windows ASLR

I'm not sure I see any new exploits there. Just some ideas what to try.
But yeah, ASLR is not magic 100% hack-proof solution. People are successfully attacking it all the time:
Using Undocumented CPU Behaviour ...de and Break KASLR in the Process
Breaking Kernel Address Space Layout Randomization with Intel TSX
Exploiting Linux and PaX ASLR’s weaknesses on 32- and 64-bit systems

Edited by Mārtiņš Možeiko on