What PE anomalies can crash the Windows Loader or cause a file to not load?7yr ⋅ the-endian-18507 ⋅ se/reverseengineering
How to know which module am I currently in? (EIP/RIP pointer)7yr ⋅ c00000fd-14864 ⋅ se/reverseengineering
How to find matching braces in IDA's decompiled code?7yr ⋅ holmes-sherlock-13634 ⋅ se/reverseengineering
Window application - Does the debugger stop the window thread?7yr ⋅ duke-nukem-14339 ⋅ se/reverseengineering
Any way to represent the file-memory relation in a Portable Executable (PE) file?11yr ⋅ ange-188 ⋅ se/reverseengineering
How do I call a statically imported function from a Dll? call dword ptr ds <> not working8yr ⋅ carraway-17921 ⋅ se/reverseengineering
Information provided by Hex-Rays after @ symbol in variable declarations10yr ⋅ minh-triet-pham-tran-23 ⋅ se/reverseengineering
How can I identify how this string is being encoded so I can replicate it?7yr ⋅ landmine-21244 ⋅ se/reverseengineering
What do the grey dashed lines in IDA's text view represent?7yr ⋅ felipe-20803 ⋅ se/reverseengineering
Reverse Engineering program written in Python, compiled with freeze10yr ⋅ thatoneguy-8066 ⋅ se/reverseengineering
What is a good and reliable C decompiler that support ELF and SH4 Architecture?7yr ⋅ zich-19355 ⋅ se/reverseengineering
Why does `ldd` and `(gdb) info sharedlibrary` show a different library base address?10yr ⋅ samuirai-145 ⋅ se/reverseengineering
What is this way of representing color in this unknown image format10yr ⋅ patr0805-4024 ⋅ se/reverseengineering
Are those code snippets and file paths in a C++ binary some sort of standard debug information?11yr ⋅ samuirai-145 ⋅ se/reverseengineering
Where is the code for a global variable declaration in Ollydbg?10yr ⋅ j1ni3-10262 ⋅ se/reverseengineering
IDA Pro: Side effects or disadvantages of Create function9yr ⋅ stackoverflowwww-11830 ⋅ se/reverseengineering
WinDbg fails to connect to IDA Pro debugger server11yr ⋅ lelouch-lamperouge-1486 ⋅ se/reverseengineering
Decompiling Modem Firmware (firmware.bin) with unknown results on binwalk11yr ⋅ thomson-bobby-3540 ⋅ se/reverseengineering
IDA Pro: How can I set memory breakpoint on field of structure?10yr ⋅ expert-10121 ⋅ se/reverseengineering
Chunked function (discontinuous chunks of code comprising a function)11yr ⋅ carstenc4-3880 ⋅ se/reverseengineering
Any way to fix misinterpreted case jump tables in Ida Pro?10yr ⋅ guntram-blohm-4154 ⋅ se/reverseengineering
Fixing import table of unpacked DLL with ImpREC : ImpRec throws invalid OEP! error9yr ⋅ ama-11518 ⋅ se/reverseengineering
Strange function in IDA Pro: Only one basic block ending with a jmp sub_xxxxxx (instead of a ret)9yr ⋅ stackoverflowwww-11830 ⋅ se/reverseengineering
RE Compressed backup file,router linux based so is it compresed with zlib?11yr ⋅ vido-3810 ⋅ se/reverseengineering
IDA Pro: Where does newly created structure go to from Pseudocode window?10yr ⋅ expert-10121 ⋅ se/reverseengineering
Missing addresses from relocation section of ASLR enabled PE binary10yr ⋅ redraga-8168 ⋅ se/reverseengineering
Debugging Win32.Upatre - why does Ollydbg fail to analyze this?9yr ⋅ figureitout-10356 ⋅ se/reverseengineering
Reversing a Mac OS X binary that appears to be non encrypted, backtrace just shows mach_msg_trap ()11yr ⋅ chris-2886 ⋅ se/reverseengineering
What is the command to go to current statement in IDA debugger?8yr ⋅ c00000fd-14864 ⋅ se/reverseengineering