NSA open-sources their binary analysis tool, Ghidra

People are already saying it's better than IDA Pro.

ghidra-sre.org/

RIP IDA, RIP Radare2, RIP Hopper

Attached: Ghidra_04.png (1587x923, 174K)

Other urls found in this thread:

github.com/NationalSecurityAgency/ghidra/wiki/Frequently-asked-questions#where-is-the-complete-ghidra-source-code
theregister.co.uk/2019/03/06/nsa_ghidra_joyce/
youtube.com/watch?v=N3VcWIUpgfE
twitter.com/NSFWRedditImage

Release source code first then we talk.

github.com/NationalSecurityAgency/ghidra/wiki/Frequently-asked-questions#where-is-the-complete-ghidra-source-code

they managed to make a decompiler shittier than snowman.
they even fucked up the disassembler, it fucks up call [rip+off32] and a bunch of other instructions.
everyone will just stay at IDA since Ghidra is trash.

Thats literally nothing.

You should check this:
theregister.co.uk/2019/03/06/nsa_ghidra_joyce/

isnt this the tool that opens a port for rce on run? im quite sure ive heard some borat/boris posting about it before

you people are such lemmings, congratulations you are compromised by your own lust

>if you enable debugging mode it allows you do connect a debugger
woooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooooow
the faggot who posted that shit is a retard

>Ghidra
Based and Kaijupilled

nice try cia nigger

Attached: r78H4Ak.jpg (780x834, 44K)

binary ninja till i die

wtf I installed this and now I keep getting porn popups that ask for my credit card!?!?!?!

youtube.com/watch?v=N3VcWIUpgfE
there we go

it opens the port on all if, dumbass. it should be localhost only

Hexrays should release their source code to compete.

Attached: 1549870964052.gif (520x520, 3.87M)

Attached: cianiggers.png (480x640, 535K)

and firewalls exist for a reason
you have to understand where this tool was used before, on completely segmented networks where it literally didn't fucking matter
it's as much of an RCE as leaving a default password to a router is

>"joining" another network is superduper hard
let me guess, the operatives that run this tool are also using only the root account, cause you know, they already know they aint gonna ruin anything so why lose time sudoing and resources changing execution privileges.
this is how retarded you sound, mr glow in the dark

how are you going to join a network that isn't connected to the internet?
christ you're a fucking retard

>better than IDA Pro
so, what architectures does it support? what executable formats?

>tfw people non ironically run NSA provided closed source binary just bc they'll """provide source soon"""

Anyone running this has a rootkit in their motherboards flash firmware now. I am not joking. Literally have to buy a new computer and burn old parts

>you need internet
lol, you stupid fucking idiot, stop posting

you're really fucking stupid
go back to webdev champ, you obviously know nothing about security

>RCE requires Internet connection
HAHAHAHAHAHAHA

(((remote)))
how're you going to use that shell and exfil information after you pop the box?
retard

>he doesn't know

Attached: 1534278944462.jpg (291x303, 68K)

>Be assured efforts are under way to make the software available here.
>efforts are under way
>assured
keks it will literally never happen...

Enjoy your microcode payload exploit fucking up your computer forever.

Attached: _NSAKEY.gif (480x518, 10K)

Bottom line, unless your machine has no networking hardware in a room literally lined floor to ceiling with tinfoil and sound deadening and no direct power connection with mains, they can breach it remotely.

don't think we didn't see that glow boy

How the frick are NSA engineers so good bros? How do I get a job there?

Little, ah, slip o' the tongue, there.
Carry on, lad.

Attached: 1541416533153.jpg (933x610, 49K)

Yeah I'm not installing that shit until I have some source.

I'll just go back to x64dbg.

>NSA open-sources
nty

Attached: 1550857007085.png (638x629, 473K)

x64dbg is a debugger, and you should be using windbg
ghidra isn't comparable to a debugger, it's a static analysis tool

Spotted the fed. The NSA is making a list of ip's/isp subscriber info who install this shit to be filed under the "muh Russian hackers" category.

Don't take the b8 until the sauce is released.

What'sa matter, kid, can't read java?

I'd imagine they're not incredibly difficult to get into if you have the ability to get security clearance. I don't know many people that'd want to work for the feds, either for morals or because the work is too white collar.

dude people with russian ips cant even go on the ghidra website

i dl'd it through proxychain'd tor am i gonna get van'd?

there's source for everything except the decompiler already

Whoa, and I thought the website was banned here in russia.

They didn't release any source, the github repo is empty.

the admin of encode.ru did upload it to mega though

Attached: 1538219682071.png (577x294, 74K)

retard

Attached: xThFJ3y.png (589x657, 60K)

What's the 3.6MB binary blob for?

i didn't know your mom's basement was so easily breached

>retards don't know the source code was already leaked anyway
Check the vault 7, faggots

Jew ильхaм "пидopac" will never do that. FUCK ISRAEL

Heard some rumors saying that a debugger will be released, it's true?

spying on you

>ghida-sre.org (blocked for Russian IPs)

AHAHAHAHAHAHA Americans are fucking butthurt

is there graph view and can you export as image instead of having to screenshot. I don't understand why IDA doesn't include this

no idea, haven't heard anything about that
honestly i doubt it could be better than windbg though, you should really learn to use it

good info thank

Why they call it open source then?

>java
Into the trash it goes

its a trick

X86 16/32/64, ARM/AARCH64, PowerPC 32/64, VLE, MIPS 16/32/64,micro, 68xxx, Java / DEX bytecode, PA-RISC, PIC 12/16/17/18/24, Sparc 32/64, CR16C, Z80, 6502, 8051, MSP430, AVR8, AVR32

I hope IDA will go open source in response to this. Fuck paying 3000€ for a decompiler.

>keks it will literally never happen...
then how do I sue them for making false statements

poor attempt at social engineering? maybe they'll release the source but lately they seem to pull some shady moves.

The only open source is your data.

Can someone explain what this does? I'm confused why these tools exist

the side effect of pr*prietary software
you have to disassemble binaries to figure out what the program does

>theregister.co.uk/2019/03/06/nsa_ghidra_joyce/

read the bottom of the article, a debugger and lots of other stuff is looking to be released.

*the side effect of brainlets not knowing assembly

Threadly reminder that this is just another part of a multifaceted plan to get your nudes, nsa are pervy.

The source code is in the zip file.

I can write my own. I just can't be bothered to.

Attached: WinPEformat.png (1246x680, 83K)

But is it free software?

cool, that's more than I expected.