YoVDO

Miasm - Reverse Engineering Framework

Offered By: Black Hat via YouTube

Tags

Black Hat Courses Reverse Engineering Courses Malware Analysis Courses

Course Description

Overview

Explore the Miasm reverse engineering framework in this 50-minute Black Hat conference talk. Delve into the framework's fundamentals, covering disassembly, assembly code, and ARM architecture. Examine symbolic execution challenges and virtual machine protection techniques. Learn about code emulation, shellcode analysis, and function stubbing. Discover different emulation levels and syscall stubbing. Gain insights into DSE/concolic execution for advanced reverse engineering tasks. Presented by Camille Mougey and Fabrice Desclaux, this talk equips security professionals with powerful tools for malware analysis and reverse engineering.

Syllabus

Intro
Disassembler
Assembly code
Same code from ARM
Symbolic execution: known issues
Virtual Machine (VM) protection
VM protection attack
First mnemonic
Reduction example
Mnemonics
String decryption
Code emulation
Implementation
Shellcode output
Shellcode analysis
Function stubs
Different level of emulation
Syscall: stub example
DSE / concolic execution


Taught by

Black Hat

Related Courses

Attack on Titan M, Reloaded - Vulnerability Research on a Modern Security Chip
Black Hat via YouTube
Attacks From a New Front Door in 4G & 5G Mobile Networks
Black Hat via YouTube
AAD Joined Machines - The New Lateral Movement
Black Hat via YouTube
Better Privacy Through Offense - How to Build a Privacy Red Team
Black Hat via YouTube
Whip the Whisperer - Simulating Side Channel Leakage
Black Hat via YouTube