RolfRolles Profile Banner
Rolf Rolles Profile
Rolf Rolles

@RolfRolles

Followers
14K
Following
3K
Statuses
2K

Static reverse engineering, deobfuscation, program analysis and formal verification, training, mathematics, compilers, functional programming, etc.

Berkeley, California
Joined July 2009
Don't wanna be here? Send us removal request.
@RolfRolles
Rolf Rolles
20 days
RT @offensive_con: Rolf Rolles (@RolfRolles) will be teaching his ‘Static Analysis of C++’ training in this year’s Offensivecon. Sign up…
0
10
0
@RolfRolles
Rolf Rolles
2 months
I like LLMs, but hallucination is getting worse. I asked o1 to explain a niche topic in compilers research. It fabricated a new topic in statistical optimization instead, so convincingly that I would think it was real if I didn't know better:
5
8
56
@RolfRolles
Rolf Rolles
2 months
RT @Dinosn: Deobfuscation of Lumma Stealer
0
30
0
@RolfRolles
Rolf Rolles
5 months
RT @ColtonSkees: (1) Decided to release the source code for my LLVM-based static binary analysis framework (. It im…
0
49
0
@RolfRolles
Rolf Rolles
6 months
New blog entry: C++ Unwind Metadata: A Hidden Reverse Engineering Bonanza
Tweet media one
1
114
320
@RolfRolles
Rolf Rolles
6 months
I would like to give a talk related to some pure reverse engineering research I did this year, but haven't been paying attention to industry conferences for a while. Apart from next year's RECON, which venues might accept such a talk?
15
8
73
@RolfRolles
Rolf Rolles
8 months
RECON ended too soon like it always does, and I'm sad I'll have to wait another year to see and meet you all again. Safe travels and best wishes to you all!
1
0
31
@RolfRolles
Rolf Rolles
8 months
RT @PLDI: PLDI will also host the third EGRAPHS workshop on Monday, Jun 24. The data structure that powers SMT solvers is now seeing use in…
0
9
0
@RolfRolles
Rolf Rolles
9 months
@is_eqv The graphs are CFGs so yes, generally the indegree is low. Only at or nearby the function epilog does the indegree tend to be higher (e.g. multiple return statements).
0
0
1
@RolfRolles
Rolf Rolles
10 months
@AzakaSekai_ I thought so! So it's not that Ghidra shows exception handlers, rather, this example's pathological characteristics conspired to show one in the decompilation. (Normally, catch handlers are at the end of .text, so they would not be physically adjacent to the main function body.)
0
1
2
@RolfRolles
Rolf Rolles
10 months
@AzakaSekai_ Go to the function definition for `_CxxThrowException` in your binary and press `F`. Is the "No Return" box checked? If not, check it and re-analyze.
1
0
2
@RolfRolles
Rolf Rolles
10 months
@AzakaSekai_ It is possible to show try, catch, wind, and unwind blocks in Hex-Rays -- -- but it's a very non-trivial R&D exercise.
@RolfRolles
Rolf Rolles
2 years
Version 2 sucks much less!
Tweet media one
0
3
5
@RolfRolles
Rolf Rolles
10 months
RT @thedailybeast: Sophia d’Antoine was walking just half a block from her Upper East Side apartment when the Land Rover hit her. https://t…
0
31
0
@RolfRolles
Rolf Rolles
1 year
@0x30n Here's my list:
1
7
40
@RolfRolles
Rolf Rolles
1 year
@gannimo @herbertbos No, it was not a space issue. Their complaint was that my citations were not to academic publications.
1
0
5
@RolfRolles
Rolf Rolles
1 year
@rgiacobazzi Congratulations, and condolences to Uni. Verona on their loss!
0
0
2
@RolfRolles
Rolf Rolles
1 year
RT @Binary_Gecko: Congrats to @RolfRolles for winning a DJI drone! No one else used the static analysis solution for the Linux Challenge 💯💯…
0
5
0