Re: diffing binaries without IDA

 diffing binaries without IDA

One very powerful differ is Diaphora by Joxean Koret. Diaphora provides great speed and better results than the regular tools. This tool relies on IDA Pro (it's an IDA Python script) so I'd say is 'with IDA'. You can download the tool from here: http://diaphora.re/ For the non-IDA options, you can u...

Re: Good resource for learning how to debug & reverse engine

 Good resource for learning how to debug & reverse engineer?

This is a Malware Analysis training developed by the students from the Rensselaer Polytechnic Institute (https://rpis.ec).

Here the link to download the materials and labs:




Re: how to dump the memory of a user-mode application?

 how to dump the memory of a user-mode application?

Hi, The first thing about working with memory dumps is basically asking to yourself how much experience do you have working with WinDBG. Fortunately, WinDBG is not the only option to work with it, but for sure is the more advanced one with a huge learning curve for the more adventurous ones. :twiste...