Status Updates From Learning Linux Binary Analysis

Learning Linux Binary Analysis Learning Linux Binary Analysis
by


Status Updates Showing 1-30 of 47

order by

lolineka
lolineka is on page 220 of 282
Sep 16, 2020 02:24PM Add a comment
Learning Linux Binary Analysis

lolineka
lolineka is on page 116 of 282
Aug 27, 2020 01:20PM Add a comment
Learning Linux Binary Analysis

Ray V
Ray V is on page 25 of 282
Apr 11, 2020 11:18PM Add a comment
Learning Linux Binary Analysis

Ray V
Ray V is on page 9 of 282
Apr 11, 2020 10:06AM Add a comment
Learning Linux Binary Analysis

Tugay
Tugay is on page 64 of 282
Jun 16, 2019 10:45AM Add a comment
Learning Linux Binary Analysis

Tugay
Tugay is on page 56 of 282
Jun 15, 2019 11:43AM Add a comment
Learning Linux Binary Analysis

Tugay
Tugay is on page 34 of 282
Jun 09, 2019 12:35PM Add a comment
Learning Linux Binary Analysis

Tugay
Tugay is on page 34 of 282
Jun 09, 2019 12:35PM Add a comment
Learning Linux Binary Analysis

Tugay
Tugay is on page 9 of 282
Jun 09, 2019 12:35PM Add a comment
Learning Linux Binary Analysis

André
André is on page 244 of 282
better ABRT/SEGV core dumps via ExtendedCoreFileSnapshot (ECFS)

ECFS exams:
・process cloaking: Saruman injects complete, dyn linked PIE executable into exist. process addr space (ftpd, sshd,…) w own thread
・Azazel
・extract parasite
・valid PLT/GOT

Kernel:
・brief chapters on detecting sys_call_table infection, intr handler patch, fun trampoline, debug register rootkit, kprobe, VFS rootkit, infected driver
・taskverse
Nov 21, 2018 02:50AM Add a comment
Learning Linux Binary Analysis

André
André is on page 195 of 282
・anti-debug: detect emulator(!), false disassembly, crypto, ctrl flow integrity, self-ptrace
・identify ctrl flow hijack: entry point, .ctors/.init_array, plt/got hooks, function trampolines
・id parasite code: position indep. code, direct syscalls, int3, atypical compiler code
・id (reverse) text padding
・mem forensics: /proc/$pid/maps, stack,…
・id .so injection: __libc_dlopen_mode, ptrace, vdso
・core files, eu-readelf
Nov 17, 2018 10:52AM Add a comment
Learning Linux Binary Analysis

André
André is on page 121 of 282
nice read so far:
- basic tools: readelf, objdump, gdb, ...
- Linux ELF "Executable and Linkable Format": file types, headers, symbols, relocations, dynamic linking, talks both 32 and 64 bit;
I watch https://www.youtube.com/playlist?list... in parallel (see ELF)
- process tracing (ptrace)
- ELF viruses: infection methods, anti-debugging

many C and assembler (GAS syntax) code examples
Oct 07, 2018 06:40PM Add a comment
Learning Linux Binary Analysis

André
André is on page 108 of 282
Oct 03, 2018 06:06PM Add a comment
Learning Linux Binary Analysis

André
André is on page 25 of 282
Sep 21, 2018 06:14PM Add a comment
Learning Linux Binary Analysis

Wang Zirui
Wang Zirui is on page 53 of 282
Aug 09, 2018 12:26AM Add a comment
Learning Linux Binary Analysis

Wang Zirui
Wang Zirui is on page 40 of 282
Aug 07, 2018 04:05AM Add a comment
Learning Linux Binary Analysis

Wang Zirui
Wang Zirui is on page 31 of 282
Aug 07, 2018 03:47AM Add a comment
Learning Linux Binary Analysis

mike
mike is on page 195 of 282
Jul 05, 2018 05:12PM Add a comment
Learning Linux Binary Analysis

mike
mike is on page 151 of 282
Jun 28, 2018 01:31PM Add a comment
Learning Linux Binary Analysis

mike
mike is on page 141 of 282
Jun 21, 2018 03:12PM Add a comment
Learning Linux Binary Analysis

伟辰 赵
伟辰 赵 is on page 71 of 282
Feb 25, 2018 09:47PM Add a comment
Learning Linux Binary Analysis

伟辰 赵
伟辰 赵 is on page 39 of 282
Feb 08, 2018 06:55PM Add a comment
Learning Linux Binary Analysis

Moshe Zioni
Moshe Zioni is on page 147 of 282
May 06, 2017 06:05PM Add a comment
Learning Linux Binary Analysis

« previous 1