An Intro to Binary Ninja (Free) for Malware Analysis

Sdílet
Vložit
  • čas přidán 5. 09. 2024

Komentáře • 37

  • @peterlafosse7294
    @peterlafosse7294 Před 5 měsíci +15

    Vector 35 Co-Founder here; Great video! Better than anything we've made internally! 😆

    • @sonianuj
      @sonianuj  Před 5 měsíci +5

      Thank you, that means a lot to me coming from you!

    • @boogieman97
      @boogieman97 Před 5 měsíci +2

      This video actually makes me want to buy the non-commercial (personal) license. NSA had their chances with Ghidra, their API is not that great even considering the widely support that is out there for Ghidra Python. Once a 3 headed dragon remains a "horrible" dragon, although it has its pros for a free disassembler. Their binary emulator / debugger is something I have tried but not user friendly which made me run away directly to Unicorn / x64Dbg. Similar to WinDbg, I cant feel that vibe.

    • @artemis-arrow3098
      @artemis-arrow3098 Před 2 měsíci

      can I have binary ninja for free?
      jk
      unless...

  • @jordanbourque5829
    @jordanbourque5829 Před 5 měsíci +3

    Binary Ninja is really a game-changer! Especially with v4, it’s wild

  • @conradcliff
    @conradcliff Před 5 měsíci +2

    Binary Ninja is absolutely where it’s at.

  • @johtodev
    @johtodev Před 5 měsíci +2

    This video anwers all my questions! The quality of this video is 10/10, congrats Anuj!
    Im buying this now.

    • @sonianuj
      @sonianuj  Před 5 měsíci

      You made my day, thank you!

  • @s1ckzer635
    @s1ckzer635 Před 5 měsíci

    You are able to explain well and understandably.
    I would be happy to see more videos around the topic of malware analysis with Binary Ninja.

    • @sonianuj
      @sonianuj  Před 4 měsíci +1

      Thank you! I do plan to release more analysis videos using Binja!

  • @devshah2670
    @devshah2670 Před 5 měsíci +1

    Anuj bhai !! thank you forrr thissss and please keep producing such top notch content on reverse engineering and malware analysis!!
    respect

  • @tlbradl
    @tlbradl Před 5 měsíci

    Anuj, you should be an anchor man on the Evening Malware News! Outstanding presentation.

    • @sonianuj
      @sonianuj  Před 5 měsíci

      Lol thanks Terry. Hope you’re well!

  • @mesh3al32
    @mesh3al32 Před 5 měsíci +1

    this is high quality content, make moooore!

    • @sonianuj
      @sonianuj  Před 5 měsíci +1

      Glad you enjoyed it!

  • @Teo97b
    @Teo97b Před 5 měsíci +1

    Hi Anuj,
    very good video, I like how binary ninja shows more readable decompiled code than Ghidra and also displays the import functions! I have a question/suggestion for upcoming video:
    How would you deal with executables that compile JIT like .Net?
    Best regards

    • @theotheryachtclub2215
      @theotheryachtclub2215 Před 5 měsíci +1

      DNSpy, or equivalent tool

    • @Teo97b
      @Teo97b Před 5 měsíci

      @@theotheryachtclub2215 yeah, but I have many questions about debugging it.

    • @sonianuj
      @sonianuj  Před 5 měsíci +1

      Thanks for the topic idea! Introducing debugging .NET with dnspyEx (github.com/dnSpyEx/dnSpy) might be a good one!

  • @neverrepetitive
    @neverrepetitive Před 5 měsíci +2

    These videos are so good

    • @sonianuj
      @sonianuj  Před 5 měsíci +1

      Thanks for watching!

    • @boogieman97
      @boogieman97 Před 5 měsíci

      Fully agree, one of the best SANS instructors that is out there! Why? If you're able to lecture such a relatively 'advanced' topic and still being able to explain it crystal clear and comprehensively.

  • @mojack624
    @mojack624 Před 5 měsíci

    Short video but very educative..

  • @raihanrafi3665
    @raihanrafi3665 Před měsícem

    UI like VSCode and Sublime text style

  • @Erackness1
    @Erackness1 Před 3 měsíci

    So the plugins tab will not work for the free version?

  • @teycitek
    @teycitek Před 3 měsíci

    What's the added value of Binary Ninja over Ghidra? Is it worth paying for it?

    • @sonianuj
      @sonianuj  Před 3 měsíci

      Depends how you feel about what I presented in the video :-)

    • @r4s3
      @r4s3 Před měsícem

      the UI and scripting is better, Ghidra has nice features and it's free but the UI is so bad

  • @RNF2015
    @RNF2015 Před 5 měsíci

    Is your vm the base FLARE install?

    • @sonianuj
      @sonianuj  Před 5 měsíci

      Actually it’s based off the SANS FOR610 VM but similar idea!

    • @RNF2015
      @RNF2015 Před 5 měsíci

      @@sonianuj it looks so much cleaner!

  • @sunlance9353
    @sunlance9353 Před 5 měsíci

    Sorry if i missed it somewhere in the video, is binary patching possible with the free version?

    • @xushengli7252
      @xushengli7252 Před 5 měsíci

      It is!

    • @JordanWiens
      @JordanWiens Před 5 měsíci

      The only type of patching you can't do in the free version is the patching using the built-in compiler SCC that the full version has. Otherwise everything in this old blog post still applies: binary.ninja/2017/12/15/change-is-in-the-air.html

    • @sunlance9353
      @sunlance9353 Před 5 měsíci

      @@JordanWiensthank you very much, great video !