ghidra
rellic
Our great sponsors
ghidra | rellic | |
---|---|---|
126 | 5 | |
47,609 | 511 | |
2.5% | 2.0% | |
10.0 | 5.5 | |
2 days ago | 3 months ago | |
Java | C++ | |
Apache License 2.0 | Apache License 2.0 |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
ghidra
-
TryHackMe- Compiled
Let's see what our beloved software reverse engineering framework Ghidra has to show.
-
OpenAI is working with the US military now
Define war machinery. Contributing to Ghidra?
https://github.com/NationalSecurityAgency/ghidra
- Ghidra 11.0 Released
-
Dogbolt Decompiler Explorer
Binary Ninja likewise is empty and keeps up just fine as well. It's not a coincidence that the two commercial products that are funding it are both confident enough to put their stuff online like this.
And it's no conspiracy theory or intentional sandbagging, you can see the implementation: https://github.com/decompiler-explorer/decompiler-explorer
and if anyone can improve the other tools performance we'd be happy to accept it. We reached out to the Ghidra devs: https://github.com/NationalSecurityAgency/ghidra/issues/5228 but they didn't have any silver bullets for us either.
-
Show HN: Ghidra Plays Mario
Nice, I'll give it a closer look. My only concern so far is memory hooking (still needed for hardware registers), which on Java side was called by FilteredMemoryState [1]. In memstate.cc it looks like just the simpler MemoryState is implemented [2], and there's no equivalent to MemoryAccessFilter. But it might not be that complicated to add...
[1]: https://github.com/NationalSecurityAgency/ghidra/blob/4561e8...
[2]: https://github.com/NationalSecurityAgency/ghidra/blob/4561e8...
- NSA releases Ghidra version 10.3.3
- Ghidra 10.3.2 released!
- Ghirda 10.3.2 released!
- Debugger Ghidra Class
rellic
- Understanding Objective-C by transpiling it to C++
-
An Algorithm for Structuring Flowgraphs (1977) [pdf]
Rellic[0] is a decompiler that uses a similar, more modern approach to turn LLVM IR into goto-free C code
[0]: https://github.com/lifting-bits/rellic
-
Decompiler Explorer
Rellic [1] implements an algorithm that generates goto-free control flows (citation in README), which would be a significant improvement against what Ghidra/IDA generates currently.
Unfortunately it looks like the maintenance state of the pieces around Rellic isn't very good, and it's quite rocket science to get it building. It doesn't have as much UI/GUI as Ghidra either so it's a bit far from accessible right now.
[1]: https://github.com/lifting-bits/rellic
- Snowman native code to C/C++ decompiler for x86/x86_64/ARM
-
Q: Irreducible Control Flow Graph in current compilers?
Worthlooking into "No more gotos" paper, you can find a copy here: https://github.com/lifting-bits/rellic/blob/master/docs/NoMoreGotos.pdf
What are some alternatives?
x64dbg - An open-source user mode debugger for Windows. Optimized for reverse engineering and malware analysis.
rz-ghidra - Deep ghidra decompiler and sleigh disassembler integration for rizin
cutter - Free and Open Source Reverse Engineering Platform powered by rizin
faust - Functional programming language for signal processing and sound synthesis
rizin - UNIX-like reverse engineering framework and command-line toolset.
lumen - A private Lumina server for IDA Pro
r2ghidra - Native Ghidra Decompiler for r2
mull - Practical mutation testing and fault injection for C and C++
ret-sync - ret-sync is a set of plugins that helps to synchronize a debugging session (WinDbg/GDB/LLDB/OllyDbg2/x64dbg) with IDA/Ghidra/Binary Ninja disassemblers.
cling - The cling C++ interpreter
ghidra-dark - Dark theme installer for Ghidra
snowman - Snowman decompiler