Compiler-Agnostic Function Detection in Binaries

Our function detector is now available open source. Clone the repository as follows:

git clone https://bitbucket.org/vusec/nucleus.git

The paper describing the tool is available here, and will be presented at EuroS&P, April 26-28 2017.

Usage

To reproduce the configuration from our paper and output a list of function addresses and sizes, use:

nucleus -d linear -f -e <binary>

To generate an IDA Python script that can import our function detection results into IDA, use:

nucleus -d linear -i idafuncs.py -e <binary>
Share on Facebook2Tweet about this on TwitterShare on Google+0Email this to someonePrint this page