Decoding Rust strings
ID: d937d459-6529-5ace-bdb4-670f8e4f604a
STIX ID: report--d937d459-6529-5ace-bdb4-670f8e4f604a
Feed Name: Pen Test Partners Blog
This blog post explains difficulties in extracting strings from Rust-compiled ARM ELF binaries due to Rust's pointer+length string representation, describes inspecting .data.rel.ro and .rodata to recover strings, and outlines a Python extractor and a Ghidra plugin the author developed to improve reverse engineering of such binaries.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
