论坛首页 逆向工程技术区 阅读主题

[转帖]Ghidra 12.1(64楼)

435 浏览 24 回复
#1 楼主 2026-06-01 21:08:49
Ghidra 10.1
What's new in Ghidra 10.1e76K9s2c8@1M7s2y4Q4x3@1q4Q4x3V1k6Q4x3V1k6Z5N6r3#2D9M7s2u0W2N6X3W2W2N6#2)9J5k6h3N6A6N6r3S2#2j5W2)9J5k6h3W2G2i4K6u0r3i4K6y4r3K9s2c8@1M7s2y4Q4x3@1q4Q4x3V1k6Q4x3V1k6Y4K9i4c8Z5N6h3u0Q4x3X3g2U0L8$3#2Q4x3V1k6z5j5i4c8A6L8$3&6S2L8q4y4W2j5%4g2J5K9i4c8&6b7h3N6W2L8X3y4&6i4K6u0r3k6$3S2A6k6s2u0S2i4K6u0r3j5X3I4G2j5W2)9J5c8V1N6Z5K9h3c8J5j5g2)9#2k6U0p5H3i4K6u0W2x3g2)9#2k6X3u0#2K9h3I4V1i4K6u0r3c8$3S2A6k6s2u0S2i4K6u0r3b7$3!0F1k6X3W2Y4N6i4u0S2N6r3W2G2L8Y4y4Q4x3V1k6b7N6h3u0D9K9h3y4Q4y4h3k6d9k6h3I4W2j5i4y4W2i4K6u0r3M7%4u0U0i4K6u0r3k6$3I4G2j5X3q4D9i4K6u0r3k6r3!0U0M7#2)9J5c8W2N6Z5j5i4c8K6e0X3g2%4i4K6u0W2K9s2c8E0L8l9`.`.
c85K9s2c8@1M7s2y4Q4x3@1q4Q4x3V1k6Q4x3V1k6Y4K9i4c8Z5N6h3u0Q4x3X3g2U0L8$3#2Q4x3V1k6z5j5i4c8A6L8$3&6S2L8q4y4W2j5%4g2J5K9i4c8&6b7h3N6W2L8X3y4&6i4K6u0r3k6$3S2A6k6s2u0S2i4K6u0r3M7X3g2D9k6h3q4K6k6i4y4Q4x3V1k6V1L8%4N6F1L8r3!0S2k6q4)9J5c8V1N6Z5K9h3c8J5j5g2)9#2k6U0p5H3i4K6u0W2x3g2)9#2k6X3u0#2K9h3I4V1i4K6u0r3k6$3S2A6k6s2u0S2i4K6g2X3x3e0m8Q4x3X3f1I4i4K6g2X3f1q4g2n7e0p5W2o6i4K6g2X3x3U0l9J5x3e0p5J5x3e0m8Q4x3X3g2*7K9i4l9`.


[培训]《冰与火的战歌:Windows内核攻防实战》!从零到实战,融合AI与Windows内核攻防全技术栈,打造具备自动化能力的内核开发高手。


最后于 2026-5-15 04:02
被linhanshi编辑

,原因:

---
来源: 看雪论坛
原文链接: https://bbs.kanxue.com/thread-270738.htm
#2 2026-06-01 21:08:49
bb9K9s2c8@1M7s2y4Q4x3@1q4Q4x3V1k6Q4x3V1k6Y4k6q4)9J5k6h3y4D9L8%4g2V1M7%4m8D9L8$3W2@1i4K6u0W2k6i4g2Q4x3X3g2G2M7X3N6Q4x3V1k6@1L8$3!0D9M7#2)9J5c8X3N6Z5K9h3c8J5j5g2)9#2k6U0p5H3i4K6u0W2x3W2)9J5k6e0q4Q4y4h3k6b7g2f1u0x3d9f1y4Q4y4h3j5J5x3o6t1J5x3e0p5I4x3q4)9J5k6i4A6A6M7l9`.`.
#3 2026-06-01 21:08:49
Ghidra 10.4 Change History (September 2023)
New Features

Analysis. Swift Type Metadata is now marked up. (GP-2085)
FileSystems. Added cramfs support. (GP-3328)
FileSystems. The File System Browser now supports the Add To Program action. (GP-3730)
Importer. Created parsers and analyzers for Device Tree Blob (DTB) and Flattened Device Tree (FDT) binaries. (GP-1436)
Listing. Added ability to reduce an instructions length to facilitate overlapping instructions. This can now be accomplished by specifying an instruction length override on the first instruction and disassembling the bytes which follow it. The need for this has been observed with x86 where there may be a flow around a LOCK prefix byte. (GP-3256)
#4 2026-06-01 21:08:49
Ghidra 10.4
afeK9s2c8@1M7s2y4Q4x3@1q4Q4x3V1k6Q4x3V1k6Y4K9i4c8Z5N6h3u0Q4x3X3g2U0L8$3#2Q4x3V1k6z5j5i4c8A6L8$3&6S2L8q4y4W2j5%4g2J5K9i4c8&6b7h3N6W2L8X3y4&6i4K6u0r3k6$3S2A6k6s2u0S2i4K6u0r3M7X3g2D9k6h3q4K6k6i4y4Q4x3V1k6V1L8%4N6F1L8r3!0S2k6q4)9J5c8V1N6Z5K9h3c8J5j5g2)9#2k6U0p5H3i4K6u0W2y4q4)9#2k6X3u0#2K9h3I4V1i4K6u0r3k6$3S2A6k6s2u0S2i4K6g2X3x3e0m8Q4x3X3f1@1i4K6g2X3f1q4g2n7e0p5W2o6i4K6g2X3x3U0l9J5x3K6l9&6x3U0S2Q4x3X3g2*7K9i4l9`.
#5 2026-06-01 21:08:49
备份一份
70bK9s2c8@1M7s2y4Q4x3@1q4Q4x3V1k6Q4x3V1k6G2k6q4)9J5k6h3y4D9L8%4g2V1M7%4m8D9L8$3W2@1i4K6u0W2N6r3!0H3i4K6u0r3j5i4m8A6i4K6u0r3M7X3q4%4i4K6u0r3i4K6y4r3M7r3q4@1K9q4)9K6c8q4)9J5c8Y4c8G2L8$3I4K6i4K6u0r3k6$3S2A6k6s2u0S2i4K6g2X3x3e0m8Q4x3X3f1K6i4K6u0W2x3#2)9#2k6W2m8g2b7V1I4u0b7#2)9#2k6U0t1H3x3U0x3H3z5o6t1&6i4K6u0W2P5X3W2H3
#6 2026-06-01 21:08:49
Ghidra 10.3.3 Change History (August 2023)Improvements
Analysis. Fixed potential infinite loop in clear flow and repair if the function found to be non-returning is cleared. (GP-3578)Debugger:Listing. The items in the Auto-Read Memory drop-down menu are now consistently ordered. (GP-3721)Debugger:Modules. Added a Mapping column in the Modules window. (GP-3436, Issue #5330)Decompiler. Decompiler now prints Equate values using constant syntax highlighting. (GP-3679, Issue #5059)GUI. Updated the Enum Editor to trim whitespace in the name field. (GP-3762, Issue #5650, #5679)Languages. Added Debugger GNU language mapping mips:3000 to the mips.ldefs specification file in support of 32-bit MIPS processor (default variant). (GP-3453, Issue #5337)Version Tracking. Improved Version Tracking function signature Apply Markup action to work correctly when both the source and destination functions use custom storage. (GP-3662, Issue #5559)Bugs
Analysis. Fixed x86 CALL <nextaddr>; POP EBX position independent code issue that was replacing the branch with a data reference which caused bad code flow. (GP-3687)Data Types. Corrected issue related to setting architecture immediately after data type archive creation where data types were added. The architecture setting failed to be retained and the existing data types failed to be adjusted. (GP-3727)Debugger. Fixed issue with default launcher command line when binary name contains spaces. (GP-3553, Issue #5460)Debugger:Agents. Removed MODULE_[UN]LOADED events (these duplicate elementsChanged on the Modules node). Fixed NullPointerException log messages from library-load events in GDB connector. (GP-3666)Debugger:Emulator. Fixed display of p-code op listing in P-code Stepper when using Dark Mode. (GP-3592)Debugger:Emulator. Fixed issue launching emulator with certain architectures with multiple address spaces. (GP-3656, Issue #5556)Debugger:Emulator. Fixed indirect branching issue when operand size doesn't match PC size. (GP-3700, Issue #5609)Debugger:GDB. Using a better strategy for module base computation using memory mappings when available. (GP-2223, Issue #5284)Debugger:Listing. Fixed issue with overlapping module and PC labels in Dynamic Listing and memory viewers. (GP-3469)Debugger:Listing. Fixed hover in address field of Dynamic Listing with multiple address spaces. (GP-3661)Debugger:Listing. Fixed issue where address-tracking drop-down cannot be accessed when certain watches are configured; e.g., (RSP+8)+8. (GP-3720)Debugger:Modules. Fixed issue using Debugger with programs in a shared project. (GP-3664, Issue #5585)Debugger:Watches. Fixed bug where watches cannot be assigned a type without an active trace. (GP-3718)Decompiler. Fixed a bug preventing the Decompiler from simplifying double-precision shifts. (GP-3688, Issue #5473)Decompiler. The Decompiler no longer tries to infer a symbol reference for a constant, if a function signature indicates the constant is not a pointer. (GP-3735)Emulator. Fixed another

...(已截断)
#7 2026-06-01 21:08:49
Ghidra 10.3.24a9K9s2c8@1M7s2y4Q4x3@1q4Q4x3V1k6Q4x3V1k6%4N6%4N6Q4x3X3g2K6L8$3k6@1M7r3g2V1K9h3q4Q4x3X3g2U0L8$3#2Q4x3V1k6Y4k6i4c8Q4x3V1k6b7M7X3!0Y4M7X3q4E0L8h3W2F1k6#2)9J5c8V1!0@1K9r3g2J5i4K6u0V1f1s2u0G2k6%4u0S2L8h3#2A6L8X3N6Q4x3X3c8r3K9h3I4W2M7#2)9J5c8V1N6Z5K9h3c8J5j5g2)9J5k6i4y4Z5N6r3#2D9
#8 2026-06-01 21:08:49
备档一份
091K9s2c8@1M7s2y4Q4x3@1q4Q4x3V1k6Q4x3V1k6G2k6q4)9J5k6h3y4D9L8%4g2V1M7%4m8D9L8$3W2@1i4K6u0W2N6r3!0H3i4K6u0r3j5i4m8A6i4K6u0r3M7X3q4%4i4K6u0r3i4K6y4r3M7r3q4@1K9q4)9K6c8q4)9J5c8Y4c8G2L8$3I4K6i4K6u0r3k6$3S2A6k6s2u0S2i4K6g2X3x3e0m8Q4x3X3f1K6i4K6u0W2x3W2)9#2k6W2m8g2b7V1I4u0b7#2)9#2k6U0t1H3x3U0x3H3y4K6p5I4i4K6u0W2P5X3W2H3
#9 2026-06-01 21:08:49
Ghidra 10.3.2aa9K9s2c8@1M7s2y4Q4x3@1q4Q4x3V1k6Q4x3V1k6Y4K9i4c8Z5N6h3u0Q4x3X3g2U0L8$3#2Q4x3V1k6z5j5i4c8A6L8$3&6S2L8q4y4W2j5%4g2J5K9i4c8&6b7h3N6W2L8X3y4&6i4K6u0r3k6$3S2A6k6s2u0S2i4K6u0r3M7X3g2D9k6h3q4K6k6i4y4Q4x3V1k6V1L8%4N6F1L8r3!0S2k6q4)9J5c8V1N6Z5K9h3c8J5j5g2)9#2k6U0p5H3i4K6u0W2x3#2)9J5k6e0u0Q4y4h3k6T1N6h3W2D9k6q4)9J5c8X3N6Z5K9h3c8J5j5g2)9#2k6U0p5H3i4K6u0W2x3#2)9J5k6e0u0Q4y4h3k6b7g2f1u0x3d9f1y4Q4y4h3j5J5x3o6t1K6x3o6M7I4x3g2)9J5k6i4A6A6M7l9`.`.
#10 2026-06-01 21:08:49
备档一份
586K9s2c8@1M7s2y4Q4x3@1q4Q4x3V1k6Q4x3V1k6G2k6q4)9J5k6h3y4D9L8%4g2V1M7%4m8D9L8$3W2@1i4K6u0W2N6r3!0H3i4K6u0r3j5i4m8A6i4K6u0r3M7X3q4%4i4K6u0r3i4K6y4r3M7r3q4@1K9q4)9K6c8q4)9J5c8Y4c8G2L8$3I4K6i4K6u0r3k6$3S2A6k6s2u0S2i4K6g2X3x3e0m8Q4x3X3f1K6i4K6u0W2x3g2)9#2k6W2m8g2b7V1I4u0b7#2)9#2k6U0t1H3x3U0x3H3y4U0p5@1i4K6u0W2P5X3W2H3
#11 2026-06-01 21:08:49
Ghidra 10.3.1
f73K9s2c8@1M7s2y4Q4x3@1q4Q4x3V1k6Q4x3V1k6Y4K9i4c8Z5N6h3u0Q4x3X3g2U0L8$3#2Q4x3V1k6z5j5i4c8A6L8$3&6S2L8q4y4W2j5%4g2J5K9i4c8&6b7h3N6W2L8X3y4&6i4K6u0r3k6$3S2A6k6s2u0S2i4K6u0r3M7X3g2D9k6h3q4K6k6i4y4Q4x3V1k6V1L8%4N6F1L8r3!0S2k6q4)9J5c8V1N6Z5K9h3c8J5j5g2)9#2k6U0p5H3i4K6u0W2x3#2)9J5k6e0q4Q4y4h3k6T1N6h3W2D9k6q4)9J5c8X3N6Z5K9h3c8J5j5g2)9#2k6U0p5H3i4K6u0W2x3#2)9J5k6e0q4Q4y4h3k6b7g2f1u0x3d9f1y4Q4y4h3j5J5x3o6t1K6x3o6j5I4y4q4)9J5k6i4A6A6M7l9`.`.
#12 2026-06-01 21:08:49
备档一份
90aK9s2c8@1M7s2y4Q4x3@1q4Q4x3V1k6Q4x3V1k6G2k6q4)9J5k6h3y4D9L8%4g2V1M7%4m8D9L8$3W2@1i4K6u0W2N6r3!0H3i4K6u0r3P5X3S2Q4x3X3c8o6e0W2)9J5c8Y4c8G2L8$3I4K6i4K6u0r3k6$3S2A6k6s2u0S2i4K6g2X3x3e0m8Q4x3X3f1K6i4K6g2X3f1q4g2n7e0p5W2o6i4K6g2X3x3U0l9J5x3K6l9#2x3e0m8Q4x3X3g2*7K9i4l9`.
#13 2026-06-01 21:08:49
Ghidra 10.312bK9s2c8@1M7s2y4Q4x3@1q4Q4x3V1k6Q4x3V1k6Y4K9i4c8Z5N6h3u0Q4x3X3g2U0L8$3#2Q4x3V1k6z5j5i4c8A6L8$3&6S2L8q4y4W2j5%4g2J5K9i4c8&6b7h3N6W2L8X3y4&6i4K6u0r3k6$3S2A6k6s2u0S2i4K6u0r3M7X3g2D9k6h3q4K6k6i4y4Q4x3V1k6V1L8%4N6F1L8r3!0S2k6q4)9J5c8V1N6Z5K9h3c8J5j5g2)9#2k6U0p5H3i4K6u0W2x3#2)9#2k6X3u0#2K9h3I4V1i4K6u0r3k6$3S2A6k6s2u0S2i4K6g2X3x3e0m8Q4x3X3f1K6i4K6g2X3f1q4g2n7e0p5W2o6i4K6g2X3x3U0l9J5x3K6l9#2x3e0m8Q4x3X3g2*7K9i4l9`.
#14 2026-06-01 21:08:49
Includes fix for log4j vulnerability
349K9s2c8@1M7s2y4Q4x3@1q4Q4x3V1k6Q4x3V1k6F1N6X3c8Q4x3X3g2F1K9i4y4@1i4K6u0W2k6$3!0$3i4K6u0r3N6Y4g2D9L8W2)9J5c8X3c8W2N6r3q4A6L8q4)9J5c8V1y4h3c8g2)9J5k6o6t1H3x3U0q4Q4x3X3b7@1y4o6t1J5z5l9`.`.
#15 2026-06-01 21:08:49
Ghidra 10.2.1

Ghidra 10.2.1 Change History (November 2022)
Improvements

Data Types. Added performance improvements for Structure build-up and resolution when simplifying assumptions can be made. (GP-2777)
Bugs

DB. Corrected database table key iterator regression error introduced with Ghidra 10.2 which could result in a NullPointerException. An internal long key iterator transition may fail under certain conditions when the iterator has already been exhausted. (GP-2805, Issue #4716)
Debugger. Removed a timeout when prompting the user for Debugger launch options. (GP-2722)
Debugger:Agents. Fixed error text rendering in Debugger agent windows. (GP-2724)
Decompiler. Fixed a bug in the Decompiler preventing local variables outside of the normal stack region from being renamed or retyped. (GP-2818)
Disassembly. Corrected regression error in Ghidra 10.2 which prevented proper disassembly flow within overlay memory blocks. (GP-2800)
GUI. Fixed table column filtering to correctly match input data containing newline characters when using the Contains string column filter. (GP-2797, Issue #4722)
GUI. Fixed the Front End's running Tool Button tooltip text to include the tool's title. (GP-2810)
Importer:Mach-O. Fixed an issue that prevented some Mach-O binaries from being imported if there were unexpected issues while creating the Program Tree. (GP-2802, Issue #4724)
Importer:Mach-O. Fixed an issue that prevented some Mach-O binaries from being imported if they did not define a __LINKEDIT segment. (GP-2803)
Importer:PE. Fixed .Net/x86 disasembly protection code which prevents disassembly of CLI code in an x86 processor. (GP-2807)
Processors. Corrected ARMv5 disassembly regression errors (GP-2812, Issue #4717)

780K9s2c8@1M7s2y4Q4x3@1q4Q4x3V1k6Q4x3V1k6Y4K9i4c8Z5N6h3u0Q4x3X3g2U0L8$3#2Q4x3V1k6z5j5i4c8A6L8$3&6S2L8q4y4W2j5%4g2J5K9i4c8&6b7h3N6W2L8X3y4&6i4K6u0r3k6$3S2A6k6s2u0S2i4K6u0r3M7X3g2D9k6h3q4K6k6i4y4Q4x3V1k6V1L8%4N6F1L8r3!0S2k6q4)9J5c8V1N6Z5K9h3c8J5j5g2)9#2k6U0p5H3i4K6u0W2x3W2)9J5k6e0q4Q4y4h3k6T1N6h3W2D9k6q4)9J5c8X3N6Z5K9h3c8J5j5g2)9#2k6U0p5H3i4K6u0W2x3W2)9J5k6e0q4Q4y4h3k6b7g2f1u0x3d9f1y4Q4y4h3j5J5x3o6t1J5x3e0p5I4x3q4)9J5k6i4A6A6M7l9`.`.
#16 2026-06-01 21:08:49
d18K9s2c8@1M7s2y4Q4x3@1q4Q4x3V1k6Q4x3V1k6Y4k6q4)9J5k6h3y4D9L8%4g2V1M7%4m8D9L8$3W2@1i4K6u0W2k6i4g2Q4x3X3g2G2M7X3N6Q4x3V1k6@1L8$3!0D9M7#2)9J5c8X3N6Z5K9h3c8J5j5g2)9#2k6U0p5H3i4K6u0W2x3W2)9#2k6W2m8g2b7V1I4u0b7#2)9#2k6U0t1H3x3U0t1I4x3e0l9I4i4K6u0W2P5X3W2H3
‹ 上一页 1 2 下一页 ›

请登录后参与讨论

立即登录 注册账号