31.12.2012 Views

Targeting the iOS Kernel - Reverse Engineering Mac OS X

Targeting the iOS Kernel - Reverse Engineering Mac OS X

Targeting the iOS Kernel - Reverse Engineering Mac OS X

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Helping IDA - findAndMarkKEXT.py<br />

• IDAPython script that<br />

• scans <strong>the</strong> __PRELINK_TEXT segment for <strong>Mac</strong>h-O files<br />

• adds new segments for each KEXT section<br />

• marks code segments as THUMB code<br />

• handles __destructor and __constructor<br />

• adds kmod_info to sqlite database<br />

• shows a list of KEXT<br />

Stefan Esser • <strong>Targeting</strong> <strong>the</strong> <strong>i<strong>OS</strong></strong> <strong>Kernel</strong> • April 2011 •<br />

20

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!