We have many news this time, but let us start with the most desired and requested one: support for ARM v8.3 instructions. With the advent of the new iPhone XS many reverse engineers started to stumble on these new instructions. Besides, they include a new security mechanism: Pointer Authentication Code. It makes exploiting software vulnerabilities much more difficult but it requires modifications in our file parsing and analysis methods.[…]
Tag: Hex-Rays
IDA 7.0 SP1 released with a lot of bugfixes
Hex-Rays Decompiler plugin for IDA, updated for OS X
If you use IDA, check out the Hex-Rays Decompiler plugin is very powerful, and now available for Mac OS X users.
http://www.surrendercontrol.com/2016/02/more-ida-pro-plugins-for-os-x.html
https://github.com/REhints/HexRaysCodeXplorer/tree/master/bin/v2.0%20%5BBlackHat%20Edition%5D/IDA%20v6.8/Mac
The Hex-Rays Decompiler plugin for better code navigation in RE process. CodeXplorer automates code REconstruction of C++ applications or modern malware.
It has multiple experienced contributors:
Alex Matrosov (@matrosov)
Eugene Rodionov (@rodionov)
Rodrigo Branco (@rrbranco)
Gabriel Barbosa (@gabrielnb)
IDA 6.9 released
https://www.hex-rays.com/products/decompiler/news.shtml#151221
https://www.hex-rays.com/products/ida/6.9/index.shtml
It has AArch64 support!
There’s another comment on Twitter from The Rootless Monster, wondering about UEFI TE support in the latest release, unclear if TE support has changed in 6.9:
https://twitter.com/osxreverser/status/679343362936315904
Hex Rays contest results
We’ve had 7 contestants this year! All plugins were interesting, but we had to choose three. Here’s the final ranking:
* First prize (1900 USD): Yaniv Balmas, Dynamic IDA Enrichment (DIE) framework
* Second prize (950 USD): Steven H. H. Ding, Kam1n0
* Third prize (450 USD): Alexander Matrosov, Eugene Rodionov, Rodrigo Branco & Gabriel Barbosa, HexRaysCodeXplorer
https://hex-rays.com/contests/2015/index.shtml
Note that one of the winners is from firmware security researchers! Congratulations!
https://hex-rays.com/contests/2015/codexplorer/CodeXplorer-Plugin_Contest_2015.zip
