arXiv · 2609.25364
Quantum ROP: Using Quantum Algorithms for ROP Chain Selection in Exploit Construction
Abstract
The quantum computing threat to cybersecurity is nowadays predominantly framed around Shor's algorithm and its eventual capacity to break asymmetric cryptography. Beyond cryptanalysis, however, quantum computing may also enable other capabilities in offensive security. This work explores one such direction: the application of quantum combinatorial optimization to Return-Oriented Programming (ROP) gadget selection for exploit construction. We formulate gadget selection as a Quadratic Unconstrained Binary Optimization (QUBO) problem that captures individual gadget cost and inter-gadget register-clobbering interactions, and solve it using QAOA on real IBM Heron r2 hardware. Applied to a Linux kernel exploitation scenario, the QAOA-selected chain achieves privilege escalation to uid=0 with SMEP and SMAP active. Across eight Linux binaries and 16 benchmark instances, QAOA recovered the lowest-cost valid chain in 11 cases; in the remaining five, it did not recover the optimum, with the failures associated with excessive circuit depth on current limited hardware.
Explore related subjects
Keep this discovery
Explore connections, maps & timelines
Carlos Benitez. 2026-09-21. Quantum ROP: Using Quantum Algorithms for ROP Chain Selection in Exploit Construction. https://arxiv.org/abs/2609.25364
Cite the original work for its findings. Save a collection to share your selection of sources.