Notes: Reverse Engineering by follower


  • radare -- "the reverse engineering framework"

  • Capstone -- "lightweight multi-platform, multi-architecture disassembly framework"

  • x64dbg -- "open-source x64/x32 debugger for windows"

  • VBinDiff (Visual Binary Diff) / vbindiff (or with cmake) -- "display two [binary] files at once, and highlight the differences between them". Primarily useful because you can move the viewing offset for each file independently which lets you "resync" the two files if they are in a (unknown) chunked format but have different chunk lengths so they don't line up. Enables you to identify common sections/offsets.

