Exetools  

Go Back   Exetools > General > General Discussion

Notices

 
 
Thread Tools Display Modes
Prev Previous Post   Next Post Next
  #1  
Old 09-07-2026, 04:18
dyers eve dyers eve is offline
Friend
 
Join Date: Nov 2023
Posts: 35
Rept. Given: 1
Rept. Rcvd 2 Times in 2 Posts
Thanks Given: 22
Thanks Rcvd at 28 Times in 13 Posts
dyers eve Reputation: 3
Talking Morse Code in Malware Analysis

Morse Code in Malware Analysis

The study of Morse code in malware is an in-depth exploration of obfuscation techniques within malicious software development. This research delves into how Morse code, a method traditionally used for telecommunication, is repurposed to conceal the true intent and functionality of malware. This repository includes two primary programs: one designed to encode strings into Morse code for obfuscation purposes and another to demonstrate the application of these obfuscated strings within an actual binary executable.

Components of the Repository
Morse Code Encoder

The first program in the repository is an encoder that transforms plain text strings into Morse code. This obfuscation process converts readable text into a sequence of dots and dashes, making it difficult for standard security tools to detect and analyze the malware’s payload. The encoder’s functionality can be summarized as follows:
  • String Conversion: Converts input strings into Morse code, using predefined mappings of characters to Morse symbols.
  • Obfuscation: Enhances the complexity of the malware, thus evading detection mechanisms by converting critical strings and commands.
  • Customization: Allows for customization of Morse code representations to obfuscate the patterns used further, adding an additional layer of complexity for reverse engineers.

Binary Integration Demonstrator

The second program in the repository is a demonstrator that showcases how these obfuscated Morse code strings can be embedded and utilized within a real binary executable. This program serves to illustrate the practical application of Morse code obfuscation in a malware context:
  • Embedding Morse Code: Integrates the obfuscated Morse code strings directly into the binary, replacing original strings or commands.
  • Decoding Mechanism: Includes a runtime decoder that translates Morse code back into its original string form during execution, allowing the malware to function as intended while maintaining obfuscation during static analysis.
  • Execution Flow: Demonstrates how the malware remains functional by decoding necessary components only at runtime, effectively bypassing many static analysis tools.

The Site: https://github.com/aiooord/mim

EXPANDING FURTHER ON THIS...
Our old site was taken down but a NEW SITE AGAIN IS A MUST!!!

I am excited to announce my upcoming new Communications Protocols Reverse Engineering Site, a destination where the elegance of signal, the mystery of transmission, and the art of decoding come together.

At its heart will be a rich exploration of Morse — Morse in history, Morse in practice, and Morse as a living symbol of human stubbornness. Visitors will discover detailed dissections of historic and obsolete protocols, with Morse given special attention through carefully curated articles, archival material, and fascinating historic YouTube videos that capture the beauty, discipline, and occasional goof-ups of Morse.

This site will celebrate Morse not only as a code, but as a cultural artifact — a language of dots and dashes that shaped communication across generations. From remarkable breakthroughs to amusing mistakes, from classic Morse transmissions to rare recordings and insightful breakdowns, the project will offer a fresh and attractive perspective on Morse for enthusiasts, researchers, and the simply curious alike.

Beyond Morse, the site will also venture into reverse engineering of other communication systems, including 5G and 6G, and experimental protocols such as moo-id, a Morse-like equivalent designed to identify and communicate with cattle, echoing the “moo” in its name. It is a tribute to how signal, meaning, and identity can be expressed across wildly different worlds.

Whether you are drawn to the discipline of Morse, the charm of Morse’s historic legacy, or the unexpected delight of moo-id, this site promises to be a vibrant hub of discovery.
Reply With Quote
 


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



All times are GMT +8. The time now is 23:14.


Always Your Best Friend: Aaron, JMI, ahmadmansoor, ZeNiX, chessgod101
( Since 1998 )