Reverse Engineering
前往频道在 Telegram
4 786
订阅者
无数据24 小时
+127 天
+5430 天
帖子存档
4 786
Dealing with ASLR When Analyzing Malware
https://digital-forensics.sans.org/blog/2014/02/17/malware-analysis-and-aslr-on-windows-8-1
4 786
Angrgdb, Create an angr state from the current debugger state.
https://github.com/andreafioraldi/angrgdb
4 786
AutoIt Malware: From Compiled Binary to Plain-Text Script
https://r3mrum.wordpress.com/2017/07/10/autoit-malware-from-compiled-binary-to-plain-text-script/
4 786
Ponce plugin for one click taint analysis and symbolic execution
https://github.com/illera88/Ponce
4 786
HxD can inspect process memory directly
Tools -> open RAM -> proc name
Or use tools like process hacker to dump process memory
