YoVDO

Ghidriff

Offered By: 44CON Information Security Conference via YouTube

Tags

44CON Courses Python Courses Reverse Engineering Courses Malware Analysis Courses Ghidra Courses Vulnerability Research Courses

Course Description

Overview

Save Big on Coursera Plus. 7,000+ courses at $160 off. Limited Time Only!
Discover ghidriff, a new open-source Python package for command line binary diffing, in this 42-minute conference talk from the 44CON Information Security Conference. Learn how this tool leverages Ghidra's power to offer a fresh approach to patch diffing workflows. Explore ghidriff's capabilities in identifying added, deleted, and modified functions between binaries, essential for reverse engineering, vulnerability research, and malware analysis. Understand how it addresses the challenges of function matching across binaries with advanced heuristics and customizable function correlation classes. Compare ghidriff to other binary diffing solutions, noting its unique command line experience that simplifies the patch diffing process to a single step. Discover how the tool generates shareable markdown files for easy result sharing. Gain insights from security researcher John McIntosh on how ghidriff can expedite understanding of patched vulnerabilities and facilitate vulnerability writeups for the security community.

Syllabus

John McIntosh - ghidriff


Taught by

44CON Information Security Conference

Related Courses

Ethical Hacking in 15 Hours - 2023 Edition - Learn to Hack
Cyber Mentor via YouTube
Contextomy - Let's Debug Together
nullcon via YouTube
macOS Security Features Bypasses by Example
nullcon via YouTube
Exploiting Android Messengers with WebRTC
nullcon via YouTube
XNU Heap Exploitation - From Kernel Bug to Kernel Control
nullcon via YouTube