Live data from Hacker News

Ghidra: A software reverse engineering suite of tools developed by the NSA

ghidra-sre.org

71–80 of 147 posts

Re: Ghidra: A software reverse engineering suite of tools developed by the NSA

#71

Earlier quoted context omitted.

I don't think there is anything fishy here, although I don't think the NSA can just install anything on my computer, even if I were based in the US. There is a lot of bluffing when it comes to cyber security. Still it might be quite a useful tool.

If they could install a virus on Iran's air-gapped uranium centrifuge industrial control systems, I'm pretty sure they could get one on your computer.

Actually hacking systems is easier than (some) individuals. It's pretty obvious if you think about it. ICS are operated by group of people, they have well defined accessibility and availability requirements, some sort of documentation exists, internal processes have large inertia.

On the other hand individual security professionals might have wildly different ideas about risk tolerance and convenience, which they also have privilege to change on the whim.

Re: Ghidra: A software reverse engineering suite of tools developed by the NSA

#72
post #7

Earlier quoted context omitted.

>although I don't think the NSA can just install anything on my computer If it's not connected to a network you are probably right....otherwise 100% wrong, if your a enough valuable target. And just lets say for fun your OS is 100% bulletproof, your +30 firmware's are not.

I doubt it. From operations that went public the attack vectors are known and you can extrapolate something about their capabilities. Of course they could get access if I were a valuable target, but that might just as well be with a large wrench. But they cannot just take control of any device. And I think many companies might even have better capabilities. Or defense, since intelligence work is very often about indu…

The NSA is an agency with a yearly budget of approximately 10 billion dollars. There are not many companies that can match that.

Re: Ghidra: A software reverse engineering suite of tools developed by the NSA

#73

I used this again just the other day with the cantor.dust plugin. My rev.eng skills are dull and were never great to begin with, but for anything below a real APT with obfuscation, runtime decoding and unpacking, Ghidra is an equalizer. Between this and Chef from gchq, someone with devops skills can probably skill up to an entry level threat analyst level in a few weeks or months. The tooling available today is reall…

I work in devops and would like to know more. Do you know any good resources for learning or starting out?

Re: Ghidra: A software reverse engineering suite of tools developed by the NSA

#74
post #68
post #64

Earlier quoted context omitted.

I can think of one concern about downloading and installing it, the NSA might be interested in who uses it. No need for anything malicious in the code, they just watch to see who downloads it.

But it's hosted on Github. And some distros have ghidra in official repos.

Is Snowden already forgotten? Doesn't matter where it's hosted, NSA still knows who downloaded it.

Re: Ghidra: A software reverse engineering suite of tools developed by the NSA

#75
post #66

Earlier quoted context omitted.

What’s with the doomer mentality. NSA isn’t some magical unicorn that can just walk through everything

>NSA isn’t some magical unicorn With unlimited money and the given job to crack encryption, hack into systems and secure the networks of the wealthiest nation and only superpower on earth atm. It IS pretty much a unicorn, and i am pretty sure they are +20 years in the future technology-wise, and with that: >>Arthur C. Clarke — 'Magic's just science that we don't understand yet.' So yes Magic Unicorn describes the NSA…

Yeah, that's bullshit. For NSA-proof personal tech stack you'd rely more on tamper-evident blocks that's all. Also, security in depth and security through obscurity are much more applicable if you're a person and not an organization. Finally, +20 years head start does not mean much if you distrohop and FOMO into bleeding edge stuff like a tech podcaster.

Re: Ghidra: A software reverse engineering suite of tools developed by the NSA

#77
post #2

It is open source software and it can reverse engineer programs from a lot of different systems. Some people may be worried about installing a piece of software on their computer that comes from the NSA. I don't think that there are real reasons to worry. One of the tasks of the NSA is defending against cyber attacks. Having more people with good tools helps the defense. Also, you can be pretty certain that some secu…

probably makes sense. I see in the government level a lot of open positions for reverse engineers.. having its own tool, helps, at least, to save money in licensing (assuming they are using or planning to use Ghidra to do that)

Re: Ghidra: A software reverse engineering suite of tools developed by the NSA

#79
post #74
post #68

Earlier quoted context omitted.

But it's hosted on Github. And some distros have ghidra in official repos.

Is Snowden already forgotten? Doesn't matter where it's hosted, NSA still knows who downloaded it.

They must know who downloaded radare and IDA as well then.
Post reply on HN