binaryanalysis's profile picture. Binary Analysis Next Generation is a modular framework that assists with auditing binary code, helping compliance and due diligence activities.

binaryanalysis

@binaryanalysis

Binary Analysis Next Generation is a modular framework that assists with auditing binary code, helping compliance and due diligence activities.

Major refactoring has been merged.


In the past three years a lot of development has been done on BANG. A major refactoring is underway. After that there should be a first proper release.


It was silent for a while here, but that doesn't mean that BANG development was silent. New additions: grub2 fonts, some bittorrent files, ubi (not ubifs), bflt, and more. Latest addition: very rough support for storing scan results in Elasticsearch.


Lots of stuff done in the last two months: refactoring, minix, coreboot, romfs, cramfs, and more.


Past few days in BANG: PNM carving and verification, unpacking various Android bootloader images, (some) FAT16 file systems and iCalendar files.


Past few days in BANG: fixes for ext2 v0 images, trx and opentype fonts, neater U-Boot unpacking, labeling/carving minidump and (some) PPM files.


Today in BANG: tagging pkg-config files and lot of warnings (and some errors) fixed after running pylint.


Past few days in BANG: PDF sanity checks, tagging Python Wheel files, recognizing/carving Broadcom TRX files and some Photoshop PSD files, plus fixes and exceptions for non-standard ISO9660 files.


Took a break from BANG development for a few days, after I added labeling/carving support for Linux flattened device tree binaries. Development continues next week.


Second technical disclosure for BANG published at TDcommons: tdcommons.org/dpubs_series/1…


First technical disclosure for BANG published at TDcommons: tdcommons.org/dpubs_series/1…


Today in BANG: carving/verifying SQLite3 files with the exception of a weird variant sometimes seen on Android devices.


Past few days in BANG: data from Chrome pak version 5 files are now extracted, Khronos KTX files and Android verified boot images are verified/carved, fewer base64 false positives (needs more work), plus various fixes.


Today in BANG: very limited verification of a few proprietary file formats (XG from 3D studio, ACDB from Qualcomm and DDS from Microsoft)


Past few days in BANG: extracting data from Chrome/Android .pak files (version 4, still need to work on version 5), fixes for Odex and ELF, plus extra sanity checks for WAV.


Today in BANG: labeling/carving of Java Key store files (version 2 only)


Past few days in BANG: many fixes for WAV/RIFF, protection against various XML exploits, fixes for fonts and CPIO, unpacking Android's tzdata files (limited carving) and more configurability.


Today in BANG: simplistic MIDI labeling/carving and fixing some crasher bugs.


Today in BANG: tagging NuGet packages, preliminary support for ZIM file format, extra sanity checks for ICO, ELF, TTF, CHM, PDF.


Past few days in BANG: processing PNG chunks, tagging APK files properly, fixes for a few crasher bugs and adding support for modified ZIP files from a specific Chinese vendor.


此帳戶目前尚未追蹤任何人
Loading...

Something went wrong.


Something went wrong.