📚 OpenRCE is preserved as a read-only archive. Launched at RECon Montreal in 2005. Registration and posting are disabled.








Flag: Tornado! Hurricane!

 Forums >>  Target Specific - General  >>  BIOS Reverse Engineering

Topic created on: May 30, 2007 05:44 CDT by Pinczakko .

The topic of BIOS reverse engineering has been getting hot since last year. I've published some papers in CodeBreakers Journal about it. The articles are accessible freely at:
http://www.geocities.com/mamanzip/   (this is the index into the articles).

One article that maybe of particular interest is in Award BIOS reverse engineering:
http://www.geocities.com/mamanzip/Articles/Award_Bios_RE/Award_Bios_RE_guide.html

A more thorough explanation regarding this subject is explained in the "BIOS Disassembly Ninjutsu Uncovered Book":
http://www.amazon.com/BIOS-Disassembly-Ninjutsu-Uncovered/dp/1931769605

Hopefully this will enlighten those interested in this subject.

Cheers,
Pinczakko

  MohammadHosein     May 30, 2007 05:59.26 CDT
thanks , i'd like to see more stuff on this topic , if anyone else is interested or involved
vxk from rootkit.com had done a great job on award BIOS unfortunately most of them written in so-called "just simp Chinese~" but he/she kindly gave me a copy of his/her work and i must say it is "the" reliable and working BIOS rootkit i was looking for , and yes i need alot of study to understand all of it ;)

anyway we all should say welcome to BIOS stuff , aka ring -1 :P

  dennis     May 30, 2007 08:02.49 CDT
> Pinczakko: The topic of BIOS reverse engineering has been getting hot since last year. I\'ve published some papers in CodeBreakers Journal about it. The articles are accessible freely at:
> http://www.geocities.com/mamanzip/Articles/Award_Bios_RE/Award_Bios_RE_guide.html   (this is the index into the articles).

Nice stuff!

  Piotr     May 30, 2007 08:33.51 CDT
Cool stuff Pinczakko.

This BIOS research thing, reminds me when my friend and I were trying to build up a anti-stealing protection in BIOS :)

  frankboldewin     May 30, 2007 12:23.49 CDT
it was yesterday when in got my paperback of "BIOS-Disassembly-Ninjutsu-Uncovered". amazon shipped it after 5 months!!!!!!!! ;)

  Pinczakko     May 31, 2007 04:36.57 CDT
> frankboldewin: it was yesterday when in got my paperback of \"BIOS-Disassembly-Ninjutsu-Uncovered\". amazon shipped it after 5 months!!!!!!!! ;)

The delay is in the printing process not in the manuscript preparation. That's why it takes quite a long time to be delivered to you. Glad you have it now :)

Note: Registration is required to post to the forums.

There are 31,328 total registered users.


Recently Created Topics
[help] Unpacking VMP...
Mar/12
Reverse Engineering ...
Jul/06
let 'IDAPython' impo...
Sep/24
set 'IDAPython' as t...
Sep/24
GuessType return une...
Sep/20
About retrieving the...
Sep/07
How to find specific...
Aug/15
How to get data depe...
Jul/07
Identify RVA data in...
May/06
Question about memor...
Dec/12


Recent Forum Posts
Finding the procedur...
rolEYder
Question about debbu...
rolEYder
Identify RVA data in...
sohlow
let 'IDAPython' impo...
sohlow
How to find specific...
hackgreti
Problem with ollydbg
sh3dow
How can I write olly...
sh3dow
New LoadMAP plugin v...
mefisto...
Intel pin in loaded ...
djnemo
OOP_RE tool available?
Bl4ckm4n


Recent Blog Entries
halsten
Mar/14
Breaking IonCUBE VM

oleavr
Oct/24
Anatomy of a code tracer

hasherezade
Sep/24
IAT Patcher - new tool for ...

oleavr
Aug/27
CryptoShark: code tracer ba...

oleavr
Jun/25
Build a debugger in 5 minutes

More ...


Recent Blog Comments
nieo on:
Mar/22
IAT Patcher - new tool for ...

djnemo on:
Nov/17
Kernel debugger vs user mod...

acel on:
Nov/14
Kernel debugger vs user mod...

pedram on:
Dec/21
frida.github.io: scriptable...

capadleman on:
Jun/19
Using NtCreateThreadEx for ...

More ...


Imagery
SoySauce Blueprint
Jun 6, 2008

[+] expand

View Gallery (11) / Submit