Packed Mach-O - Reverse Engineering
Автор: L0psec Reversing
Загружено: 2025-05-05
Просмотров: 668
Описание:
Packed binaries are common with Windows malware , however on macOS this is less common. In this video, I go over two samples that exhibit packing like behavior.
The first sample is written in Rust and simply contains an embedded mach-O which is written to a temp file at runtime and executed.
The next sample actually uses some obfuscation (although easy to identify and deal with using simple Binary Ninja scripts) which then de-obfuscates the Mach-O and drops it to execute.
Повторяем попытку...
Доступные форматы для скачивания:
Скачать видео
-
Информация по загрузке: