Tim Blazytko · @mr_phrazer
563 followers · 16 posts · Server infosec.exchange

New version of my to identify obfuscated code. Besides major performance improvements it includes a new heuristic to detect frequently called functions which identifies string decryption and API hashing routines in .

Code: github.com/mrphrazer/obfuscati

#binaryninja #malware

Last updated 1 year ago

I have released a new version of PCDump-bn. In this new release, a new folder will be created within the provided directory each time the plugin is run, allowing better organization and avoiding mixing or overwriting of existing dumped files.

github.com/AsherDLL/PCDump-bn/

#binaryninja #reversing #re #vulnerability #research

Last updated 2 years ago

Tim Blazytko · @mr_phrazer
531 followers · 14 posts · Server infosec.exchange

New blog post and updated plugin: "Statistical Analysis to Detect Uncommon Code" We use statistics to identify obfuscation in an , a mobile DRM, a kernel module & . We also dig into the obfuscation and analyze what we pinpointed.

Link: synthesis.to/2023/01/26/uncomm

Code: github.com/mrphrazer/obfuscati

#binaryninja #anticheat #windows #malware

Last updated 2 years ago

Oh FML, I managed to lose my installer while migrating hard drives๐Ÿคฆโ€โ™€๏ธ
Anyone happen to randomly have the Windows installer for the latest dev branch release of 2.x from before March 23rd 2021?

Vector35 doesn't (understandably) offer downloads for expired licensees.

(boosts appreciated if you think your followers might be packrats :D)

#binaryninja #help

Last updated 2 years ago

Tara · @tarajdactyl
496 followers · 676 posts · Server tech.lgbt

I'm super excited - got approval for Binary Ninja at work! I've been wanting to try it out for a while but haven't had the opportunity to do any real work with it. looking forward to REing in the new year!

#reverseengineering #binaryninja

Last updated 2 years ago

I wrote this plugin to dump the Psuedo C (generated by Binary Ninja's decompiler) of a given binary into a folder:

Feedback is welcome! :ablobcatbongokeyboard:โ€‹

github.com/AsherDLL/PCDump-bn

#security #binaryninja #reversing #re #reverseengineering #decompiler #binja

Last updated 2 years ago

I wrote this plugin to dump the Psuedo C (generated by Binary Ninja's decompiler) of a given binary into a folder:

Feedback is welcome! :ablobcatbongokeyboard:โ€‹

github.com/AsherDLL/PCDump-bn

#security #binaryninja #reversing #re #reverseengineering #decompiler #binja

Last updated 2 years ago

ITSEC News · @itsecbot
1006 followers · 32843 posts · Server schleuss.online

Manticore GUIs made easy - By Wong Kok Rui, National University of Singapore
Trail of Bits maintains Manticor... blog.trailofbits.com/2022/12/1

#ghidra #manticore #binaryninja #symbolicexecution

Last updated 2 years ago

0xor0ne · @0xor0ne
154 followers · 17 posts · Server infosec.exchange
Advanced Fuzzing League · @aflplusplus
345 followers · 11 posts · Server infosec.exchange

For binary-only emulation in qemu, you can now dump DrCov traces to see in (lighthouse), (bncov), or (dragondance) which paths the executions took.

This helps you understand where your fuzzer gets stuck, develop the harness further, and reach greater depth in the binary, eventually.

Binary-only modes of ( / ) and libafl_frida also support DrCov output, already.


github.com/AFLplusplus/LibAFL/

#libafl #idapro #binaryninja #ghidra #aflplusplus #qemu #frida #fuzzing #fuzzingtips

Last updated 2 years ago

ITSEC News · @itsecbot
856 followers · 32559 posts · Server schleuss.online

Look out! Divergent representations are everywhere! - By Andreas Kellas
Trail of Bits recently published a blog post about a signed inte... blog.trailofbits.com/2022/11/1

#codeql #binaryninja #uncategorized #researchpractice #internshipprojects

Last updated 2 years ago

buherator · @buherator
432 followers · 226 posts · Server infosec.exchange

RT @seeinglogic@twitter.com

Happy to share Ariadne (github.com/seeinglogic/ariadne) a plugin I wrote to combine an interactive proximity view, static analysis, graph workflows (like source โ†’ sink), and coverage analysis!

Live on the BN plugin manager now ๐Ÿฅท

๐Ÿฆ๐Ÿ”—: twitter.com/seeinglogic/status

#binaryninja

Last updated 2 years ago

I did something ๐Ÿ˜Œโ€‹

#binaryninja

Last updated 2 years ago

ITSEC News · @itsecbot
856 followers · 32557 posts · Server schleuss.online

MUI: Visualizing symbolic execution with Manticore and Binary Ninja - By Alan Chang, University of Oxford
During my summer internship, I had the wonderf... blog.trailofbits.com/2021/11/1

#manticore #binaryninja #symbolicexecution #internshipprojects

Last updated 3 years ago

ITSEC News · @itsecbot
687 followers · 32461 posts · Server schleuss.online

Revisiting 2000 cuts using Binary Ninjaโ€™s new decompiler - Itโ€™s been four years since my blog post โ€œ2000 cuts with Binary Ninja.โ€ Back then, Binary Ninja was i... more: blog.trailofbits.com/2020/04/1

#exploits #binaryninja

Last updated 5 years ago