⚠ Switch to EXCALIDRAW VIEW in the MORE OPTIONS menu of this document. ⚠ You can decompress Drawing data with the command palette: ‘Decompress current Excalidraw file’. For more info check in plugin settings under ‘Saving’

Excalidraw Data

Text Elements

  1. Get Information on Binary

  2. Perform Static Analysis

  3. Perform Dynamic Analysis

  4. Develop Config Extractor

  5. Develop Comms Emulator

Packed?

Overview of capabilities

Idea of algorithms

comms routine?

configs?

crypto algorithms?

anti analysis methods?

Confirm comms routine

Confirm location of config

Confirm crypto

Parse binary to retrieve config

Extract config

Parse config to useful output

Understand comms routine

Understand config data

Emulate comms