5 ms·
Cool write up, reminds me of a .net app I had to RE a few years ago which used a custom bytecode/VM for sensitive functions, such as some string crypt/obfuscate
by tsujamin 4y ago
Cool write up, reminds me of a .net app I had to RE a few years ago which used a custom bytecode/VM for sensitive functions, such as some string crypt/obfuscate operations which I was trying to grok. Giant pain in the ass.
…until I saw that they re-implemented the same operations in some schema migration code without adding the magic ”obfuscate-me” annotations
- BoorishBears 4y agoI ran into the same thing reverse engineering a piece of exercise equipment The routines for communicating with sensors were heavily obfuscated in the main application... but the factory sensor test application had been left installed and was completely clear.
- justinjlynn 4y agoone of their (more senior) engineers: "OoPsiE. WhAt A hUgE MisTakE. wHaT eVeR shAll I Do."
- tw98521358 4y agoObfuscation instructions were never issued to the test team by senior manager lol