Detail výsledku

A Novel Approach to Online Retargetable Machine-Code Decompilation

ĎURFINA, L.; KŘOUSTEK, J.; MATULA, P.; ZEMEK, P. A Novel Approach to Online Retargetable Machine-Code Decompilation. Journal of Network and Innovative Computing (JNIC), 2014, vol. 2, no. 1, p. 224-232. ISSN: 2160-2174.
Typ
článek v časopise
Jazyk
anglicky
Autoři
Ďurfina Lukáš, Ing., Ph.D., FIT (FIT)
Křoustek Jakub, Ing., Ph.D., FIT (FIT), UIFS (FIT)
Matula Peter, Ing., FIT (FIT), UIFS (FIT)
Zemek Petr, Ing., Ph.D., UIFS (FIT)
Abstrakt

Machine-code decompilation, belonging to the area of reverse engineering, has found its applications in many real-world areas. Analysis of malicious software, search for vulnerabilities, and source-code recovery are some of the most important uses. As there exists a diversity of different platforms on which software can be run, an existence of a generic decompiler would be highly appreciated.

This paper presents an extended version of our retargetable decompiler that also allows decompilation of raw binary code, such as firmware or code snippets. More specifically, in the present paper, we provide a description of a retargetable decompiler that is being developed within the Lissom project. First, we give an introduction into the area of machine-code decompilation, including a brief discussion of existing tools. Then, we describe the concept and architecture of the decompiler. As it is available in the form of a web service, we also provide its description. Finally, we summarise our results, present a case study of using the tool for analysing malicious software, and conclude the paper by several remarks on future research.

Klíčová slova

reverse engineering, decompilation, retargetable decompiler, raw machine code, code snippets, web service, Lissom

URL
Rok
2014
Strany
224–232
Časopis
Journal of Network and Innovative Computing (JNIC), roč. 2, č. 1, ISSN 2160-2174
BibTeX
@article{BUT111623,
  author="Lukáš {Ďurfina} and Jakub {Křoustek} and Peter {Matula} and Petr {Zemek}",
  title="A Novel Approach to Online Retargetable Machine-Code Decompilation",
  journal="Journal of Network and Innovative Computing (JNIC)",
  year="2014",
  volume="2",
  number="1",
  pages="224--232",
  issn="2160-2174",
  url="http://www.mirlabs.net/jnic/secured/Volume2-Issue1/Paper24/JNIC_Paper24.pdf"
}
Projekty
Centrum excelence IT4Innovations, MŠMT, Operační program Výzkum a vývoj pro inovace, ED1.1.00/02.0070, zahájení: 2011-01-01, ukončení: 2015-12-31, ukončen
Výzkum pokročilých metod ICT a jejich aplikace, VUT, Vnitřní projekty VUT, FIT-S-14-2299, zahájení: 2014-01-01, ukončení: 2016-12-31, ukončen
Výzkumné skupiny
Pracoviště
Nahoru