Section: .. / linux / reverse-engineering /
| /// File Name: |
hypersrc-2.1.6.tar.gz |
Description:
|
hypersrc is a GUI program for browsing source code, which uses GTK+. It provides a list widget containing sorted source code tags. A programmer can click a tag to hyperlink to a particular tagged line in a source code file. Screenshot here.
| | Author: | Jim Brooks | | Homepage: | http://www.jimbrooks.org/web/hypersrc/hypersrc.html | | Changes: | Fixed all known segfaults. | | File Size: | 101339 | | Last Modified: | Jan 3 23:27:11 2001 |
| MD5 Checksum: | 992fbec325b7a06225603aca670af082 |
|
| /// File Name: |
hypersrc-1.2.1.tar.gz |
Description:
|
hypersrc is a GUI program for browsing source code, which uses GTK+. It provides a list widget containing sorted source code tags. A programmer can click a tag to hyperlink to a particular tagged line in a source code file. Screenshot here.
| | Author: | Jim Brooks | | Homepage: | http://www.jimbrooks.org/web/hypersrc/hypersrc.html | | Changes: | Starts much faster now. | | File Size: | 76584 | | Last Modified: | Jul 23 05:08:10 2000 |
| MD5 Checksum: | 312406c825e11ba1c8b654dfc325b1b0 |
|
| /// File Name: |
cscope-13.0-2.tar.gz |
Description:
|
cscope is an interactive, screen-oriented tool that allows the user to browse through C source files for specified elements of code. The current version allows searching code for all references to a symbol, global definitions, functions called by a function, functions calling a function, test string, regular expression pattern, a file, and files including a file.
| | Author: | Petr Sofra | | Homepage: | http://cscope.sourceforge.net/ | | Changes: | Supprts more architectures. | | File Size: | 74346 | | Last Modified: | May 17 02:46:33 2000 |
| MD5 Checksum: | c727eff70fddfee73754537b6be39597 |
|
| /// File Name: |
LDasm-0.04.53.tar.gz |
Description:
|
LDasm (Linux Disassembler) is a Perl/Tk-based GUI for objdump/binutils that tries to imitate the look and feel of W32Dasm. It searches for cross-references (e.g. strings), converts the code from GAS to a MASM-like style, and much more.
| | Author: | Ravemax | | Homepage: | http://rover.wiesbaden.netsurf.de/~ravemax/ldasm.htm | | Changes: | Fileoffset is calculated and is displayed. Screen shot here. | | File Size: | 60655 | | Last Modified: | Dec 18 22:58:03 2002 |
| MD5 Checksum: | db571e90f47d43062072b6131c639ee6 |
|
| /// File Name: |
elf-0.5.4p1.tar.gz |
Description:
|
elf is a command-line tool that allows a user, be it a script or a human, to analyze the contents of an ELF object file header. This header contains various integral values such as the virtual entry point of the object file, the machine architecture it was compiled for and more.
| | Author: | Samy | | Homepage: | http://www.kerneled.org/projects/elf/ | | File Size: | 48076 | | Last Modified: | Sep 9 07:26:18 2004 |
| MD5 Checksum: | 764d94eaa8f4ef6bdd12994a507fd9fc |
|
| /// File Name: |
LDasm-0.02.40.tar.gz |
Description:
|
LDasm (Linux Disassembler) is a Perl/Tk-based GUI for objdump/binutils that tries to imitate the look and feel of W32Dasm. It searchs for cross-references (e.g. strings), converts the code from GAS to a MASM-like style, and much more.
| | Author: | Ravemax | | Homepage: | http://rover.wiesbaden.netsurf.de/~ravemax/ldasm.htm | | Changes: | New html-export and language support, bugfixes for Status-window and ReadSymbolTable. Screen shot here. | | File Size: | 43922 | | Last Modified: | May 11 01:13:33 2000 |
| MD5 Checksum: | 0381e9bfa9e2e987120536318d30fb80 |
|
| /// File Name: |
debauch-0.5.tar.gz |
Description:
|
Debauch is a memory allocation debugger for C which has been modified from memleak from the XFree86 project. The debugger will detect memory leaks, corrupted memory, stores to freed memory and more. Best of all, it doesn't require recompiling or relinking existing programs to work, making it ideal for finding leaks even in shared libraries. Currently debauch works on Linux systems. Preliminary ports for BSD, MIPS and Sun architectures are available but may not work properly at present.
| | Homepage: | http://quorum.tamu.edu/jon/gnu/ | | File Size: | 41212 | | Last Modified: | Jun 21 18:47:01 2000 |
| MD5 Checksum: | 08f07f86b6a5875db718fffb76c83723 |
|
| /// File Name: |
LDasm-0.01.32.tar.gz |
Description:
|
LDasm (Linux Disassembler) is a Perl/Tk-based GUI for objdump/binutils that tries to imitate the look and feel of W32Dasm. It searchs for cross-references (e.g. strings), converts the code from GAS to a MASM-like style, and much more. Screen shot here.
| | Author: | Ravemax | | Homepage: | http://rover.wiesbaden.netsurf.de/~ravemax/ldasm.htm | | File Size: | 36684 | | Last Modified: | Apr 17 22:04:00 2000 |
| MD5 Checksum: | f23eca9aaf1495c7cfced3a34c0b16e2 |
|
| /// File Name: |
hex_0.9.tar.gz |
Description:
|
Phex (Ptolomei's Hex Editor) is a simple hex editor for Unices with a look & feel similar to that of joe. It supports files up to 256 MB, binary and text search, and basic block operations. Originally programmed for Linux, it should work on all Unices with curses libraries.
| | Author: | Senko Rasic | | Homepage: | http://fly.srk.fer.hr/~senko/hex/ | | File Size: | 30980 | | Last Modified: | Mar 24 04:35:45 2000 |
| MD5 Checksum: | a67bd9c3b17e80aafc27f62baaf24edd |
|
| /// File Name: |
reverse_backdoored_binaries.txt |
Description:
|
Well written whitepaper about reverse engineering backdoored binaries. It is meant for the beginner reverse engineer with some knowledge of ELF, C, x86 ASM, and Linux.
| | Author: | borg | | Homepage: | http://www.cr-secure.net/ | | File Size: | 28027 | | Last Modified: | Apr 19 15:49:00 2004 |
| MD5 Checksum: | 44254a0ab92d356cf69959d3c8060f44 |
|
| /// File Name: |
examiner-0.4.tar.gz |
Description:
|
The Examiner is a tool to analyze foreign binary executables. The goal of is to be able to get output similar to strace without executing the binary in question. Uses the objdump command to disassemble and comment binaries. This tool was designed for forensic purposes but could be used for basic reverse-engineering goals as well.
| | Author: | Craig Smith | | Homepage: | http://AcademicUnderground.org/examiner | | File Size: | 23248 | | Last Modified: | Jul 4 10:24:30 2002 |
| MD5 Checksum: | b54af6041cacbbdea2ecb0ed95bce2b1 |
|
| /// File Name: |
hdasm.tgz |
Description:
|
Hdasm is a DASM hack in perl that dumps output as html allowing the Reverser to follow JMPs and CALLs with ease.
| | Author: | Amphisbaena | | File Size: | 17755 | | Last Modified: | Mar 24 20:18:03 2000 |
| MD5 Checksum: | eff6e79daf090315d6e04d297b242a88 |
|
| /// File Name: |
spkproxy1.0.tar.gz |
Description:
|
SPIKE proxy is a proxy which uses the SPIKE API to help reverse engineer new and unknown network protocols. Provides security analysis features for Web applications, a multi-threaded design, man in the middle SSL proxying, handles Connection: keep-alive properly (it is possible to log in to Hotmail with it), and rewrites User-Agent to pretend to be running IE. Requires pyOpenSSL pre 0.5 from the SPIKE Web page. Several working examples are included.
| | Author: | Dave Aitel | | Homepage: | http://www.immunitysec.com/spike.html | | File Size: | 16436 | | Last Modified: | Jul 15 03:18:41 2002 |
| MD5 Checksum: | 8bf40cc6cecfff2da3663229ce715a79 |
|
| /// File Name: |
Linux_Memory_Tools-0.2.tar.gz |
Description:
|
Linux Memory tools are a set of Linux tools (Python, C and ASM) which aim is to facilitate exploit development. These tools can be used to dump process memory, search for patterns and quickly find OPCODEs location addresses (instructions and mnemonics are functional but still in development). OPCODE search is possible on an instant memory snapshot or using a file dump. These tools are been quickly coded and should be considered as helpful scripts. Return addresses or shellcode locations can be found instantly.
| | Author: | Pierre BETOUIN | | Homepage: | http://securitech.homeunix.org/lmt/ | | File Size: | 14165 | | Last Modified: | Oct 4 00:36:59 2006 |
| MD5 Checksum: | ee818078aefb095992a0780c0ca86651 |
|
| /// File Name: |
reqt-0.7f.tar.gz |
Description:
|
The Reverse Engineer's Query Tool is a script that will attempt to exstract as much information from a binary as possible, strings, symbols, hex dump, disassembly, etc.
| | Author: | The Grugq | | File Size: | 12454 | | Last Modified: | Feb 17 21:55:18 2000 |
| MD5 Checksum: | c23fb8ba23bf4b581faeeeb64f54883f |
|
| /// File Name: |
exectrace-v0.1.tar.gz |
Description:
|
ExecTrace is a linux only debugging tool that logs to a file the execution path of a child process using ptrace. This is good when you have a program that continually segfaults and you want to know where and why.
| | File Size: | 10917 | | Last Modified: | Apr 2 22:23:00 2000 |
| MD5 Checksum: | f6a5338e4cad46857cdb3725686c98cf |
|
| /// File Name: |
reap-0.4B.tar.gz |
Description:
|
The Reverse Engineer's Assembly Producer is a GUI to dasm with some added functionality, the ability to include hexidecimal opcodes in the assembler listing.
| | Author: | The Grugq | | Homepage: | http://reap.cjb.net | | File Size: | 7292 | | Last Modified: | Feb 17 21:55:18 2000 |
| MD5 Checksum: | 4035d71c0a653b9010c3139960afc2eb |
|
| /// File Name: |
repeat.tar.gz |
Description:
|
The Reverse Engineer's Patcher is the first byte patcher for UNIX systems. It will compare two binaries and produce a patch in C.
| | Author: | The Grugq | | File Size: | 4301 | | Last Modified: | Aug 9 10:34:00 2000 |
| MD5 Checksum: | 789bfd8669711efdf2def87f1fd9b4b7 |
|
| /// File Name: |
dasm |
Description:
|
A script to parse output from the objdump binutil and write in cross refrences (read: Linux disassembler!)
| | Author: | SiuL+Hacky | | Homepage: | http://huclinux.cjb.net/ | | File Size: | 4148 | | Last Modified: | Feb 17 21:55:18 2000 |
| MD5 Checksum: | 50b1b294bd266950a463e0364d72581b |
|
| /// File Name: |
anti-ptrace.txt |
Description:
|
Linux LKM that disables ptrace abilities in the 2.4.x kernels.
| | Author: | sacrine | | Homepage: | http://www.netric.org/ | | File Size: | 2359 | | Last Modified: | Apr 16 08:24:37 2003 |
| MD5 Checksum: | 733b5e9e6be20f03180a6fce8f8f6c07 |
|
| /// File Name: |
oOps.c |
Description:
|
oOps.c grabs hardcoded strings from binary files. Shows rootkit passwords and other information that is encoded character at a time to avoid binary examination like the strings command. Tested on Linux.
| | Author: | Gunzip. | | File Size: | 1551 | | Last Modified: | Jan 5 16:49:56 2003 |
| MD5 Checksum: | c16cd712e1571f6a4b3095de4011a13e |
|
|
|
|
|