The basic functionality comprehensible from IDA SDK’s headers or examples may be omitted.īoth IDA and IDA SDK used in this article are of version 7.5. It focuses on the advanced features it aims to introduce. The article expects the reader has a good knowledge of IDA plugin writing. The scope of this article is limited to the GUI-related features within IDA SDK, not the decompilation itself. When you are “grepping” GitHub hoping to find a real-world-usage example of IDA SDK function. In fact, many of the possibilities discussed here are probably not used outside of Hex-Rays itself. This article demonstrates how to use the extensive, but often not self-evident, functionality provided by IDA SDK in order to put together a plugin with Hex-Rays-like capabilities. It is its overall seamless integration with the interactive disassembler that makes it an invaluable reversing tool. However, Hex-Rays’s strength goes beyond its decompilation quality. Hex-Rays is a popular plugin to IDA which further simplifies the binary analysis by decompiling native code into a C-like pseudocode. IDA has become the standard for modern disassemblers used in the reverse engineering community.
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |