Exetools  

Go Back   Exetools > General > General Discussion

Notices

Reply
 
Thread Tools Display Modes
  #1  
Old 08-26-2017, 00:50
chants chants is online now
VIP
 
Join Date: Jul 2016
Posts: 737
Rept. Given: 37
Rept. Rcvd 48 Times in 30 Posts
Thanks Given: 671
Thanks Rcvd at 1,064 Times in 482 Posts
chants Reputation: 48
Tools for sophisticated binary key sniffing

Given a function call e.g. de/encryption in an app, is there a way to treat it as a black box and do techniques such as:

Data tracing where input data is traced, and each data dependent on that data by arithmetic or decision operations, is also traced, leading possibly to a very large amount of data being traced. In some sort of automated and easy to control way?

Control flow and data flow differential analysis. Flip one bit, and compare detailed execution traces and how the data is different between them, and where in its execution the divergences occur and such.

These sound like quite sophisticated techniques which could take a very complex task like breaking through very mathematically complex code - well obfuscated, and simplify it towards being nearly trivial and literally trivializing very sophisticated protection schemes.

Does anyone know of such comprehensive tools? I am quite certain some unreleased ones are used by certain security researchers and such but I do not know what is out there.
Reply With Quote
  #2  
Old 08-26-2017, 18:17
chants chants is online now
VIP
 
Join Date: Jul 2016
Posts: 737
Rept. Given: 37
Rept. Rcvd 48 Times in 30 Posts
Thanks Given: 671
Thanks Rcvd at 1,064 Times in 482 Posts
chants Reputation: 48
Alluded to here as it seems like a trending research topic in the last couple years:

Differential Fault Analysis on White-box AES Implementations
Quote:
https://blog.quarkslab.com/differential-fault-analysis-on-white-box-aes-implementations.html
Unboxing the White-Box: Practical attacks against Obfuscated Ciphers
Quote:
https://www.blackhat.com/docs/eu-15/materials/eu-15-Sanfelix-Unboxing-The-White-Box-Practical-Attacks-Against-Obfuscated-Ciphers-wp.pdf
White-Box Cryptography: Don’t Forget About Grey Box Attacks
Quote:
https://eprint.iacr.org/2017/355.pdf
Analysis of Software Countermeasures for Whitebox Encryption
Quote:
https://eprint.iacr.org/2017/183.pdf
There are some GitHub projects but I have yet to see any serious and easy to use tools in this regard.
Reply With Quote
The Following 4 Users Say Thank You to chants For This Useful Post:
an0rma1 (08-29-2017), b30wulf (08-30-2017), foosaa (09-20-2017), niculaita (08-27-2017)
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
help deobfuscating .net binary jonwil General Discussion 3 05-02-2020 09:13


All times are GMT +8. The time now is 07:35.


Always Your Best Friend: Aaron, JMI, ahmadmansoor, ZeNiX, chessgod101
( 1998 - 2024 )