Statistics

Members: 1925
News: 293
Web Links: 1
Visitors: 3826330

Who's Online

Damn Vulnerable LinuxDamn Vulnerable Linux (DVL) is a Linux-based (modified Damn Small Linux) tool for IT-Security & IT-Anti- Security and Attack & Defense. [CLICK HERE FOR MORE INFOS! ]

Featured Conference Video

T16-Recon2006-Joe_Stewart-OllyBonE.gif OllyBone - Semi-Automatic Unpacking on IA-32. View the conference video here!
Home arrow Submit Your Paper!
Process Stalking - Run-Time Visual Reverse Engineering
User Rating: / 0
PoorBest 
Written by Pedram Amini   
Side Story
Wizard searching: reversing the commercial web for fun and knowledge

Like a skilled native, the able seeker has become part of the web. He knows the smell of his forest: the foul smelling mud of the popups, the slime of a rotting commercial javascript. He knows the sounds of the web: the gentle rustling of the jpgs, the cries of the brightly colored mp3s that chase one another among the trees, singing as they go; the dark snuffling of the m4as, the different sounds and the rustling of the databases, the pathetic cry of the common user, a plaintive cooing that slides from one useless page down to the next until it dies away in a soft, sad, little moan. In fact, to all those who do not understand it, today's Internet looks like a dangerous, closed, hostile and boring commercial world.

Yet if you stop and hear attentively, you may be able to hear the seekers, deep into the shadows, singing a lusty chorus of praise to this wonderful world of theirs -- a world that gives them everything they want.

The web is the habitat of the seeker, and in return for his knowledge and skill it satisfies all his needs.

Read More >>



Process Stalking® is a term coined to describe the combined process of run-time profiling, state mapping and tracing. Consisting of a series of tools and scripts the goal of a successful stalk is to provide the reverse engineer with a intuitive interface to run-time block-level trace data.

The Process Stalking suite is broken into three main components; an IDA Pro plug-in, a stand alone tracing tool and a series of Python scripts for instrumenting intermediary and GML graph files. The generated GML graph definitions were designed for usage with a freely available interactive graph visualization tool.
pdf Process Stalking - Run-Time Visual Reverse Engineering

pdf Process Stalking - Run-Time Visual Reverse Engineering