UNIX-like reverse engineering framework and command-line toolset
Go to file
2013-03-03 05:09:16 +01:00
binr Better r2 -L output. Sync spaces with rasm2/rabin2 -L 2013-03-03 03:23:52 +01:00
doc Add conditionals, 'dsi' to continua !, Fix bindings build 2013-03-03 05:03:48 +01:00
libr Remove annoying debug printf message 2013-03-03 05:09:16 +01:00
man Add rasm2 -w to describe opcodes, fix massemble 2013-02-24 21:12:30 +01:00
media fix keepr2 proportions 2013-01-03 18:11:31 +01:00
mk Better webui, 'pi' counts opcodes and remove /new and htmlgraph 2013-01-25 03:22:09 +01:00
pkgcfg Fix segfault in DEX parser, remove more r_print refs 2013-01-23 01:53:32 +01:00
prefix Better webui, 'pi' counts opcodes and remove /new and htmlgraph 2013-01-25 03:22:09 +01:00
r2-bindings Minor fixes for ctypes bindings 2013-02-19 03:03:05 +01:00
shlr Fixes in the Java CLASS parser and arm assembler 2013-02-19 19:32:02 +01:00
sys Fix clang-analyzer script 2013-02-07 19:31:18 +01:00
.gitignore Added vala attributes 2012-09-07 03:26:32 +04:00
.hgtags Added tag 0.9 for changeset f0b46eee0246 2011-12-06 03:00:16 +01:00
AUTHORS Support get/set introspection in 'pf' and handle scr.stride in px 2013-02-01 03:15:48 +01:00
autogen.sh * Import the r_regex api in libr/util/regex from OpenBSD source 2011-09-14 02:07:06 +02:00
config-user.mk.acr Fix --host crosscompile (acr 0.9.2) 2013-02-06 11:47:31 +01:00
configure Update io_ewf plugin for latest API. Fix in configure 2013-03-01 02:00:22 +01:00
configure-plugins * Fix pkg-config-symstall 2011-05-20 19:49:50 +02:00
configure.acr Fix --host crosscompile (acr 0.9.2) 2013-02-06 11:47:31 +01:00
configure.hook Load bin info in debugger and some doc/sys cleanup 2012-10-23 18:44:32 +02:00
DEVELOPERS DEVELOPERS~=s/hg/git/ . thanks srm! 2012-12-12 19:27:25 +01:00
env.sh * Move RELEASE stuff from doc/releases to DEVELOPERS 2011-07-19 12:52:51 +02:00
global.mk Better paralelization of build system 2012-10-04 01:20:00 +02:00
LICENSE * Remove unused include files 2010-03-14 18:50:17 +01:00
Makefile Fix w32 build 2013-01-23 14:50:50 +01:00
plugins.def.cfg Enable TE format plugin by default 2013-03-03 03:26:16 +04:00
README.md Load bin info in debugger and some doc/sys cleanup 2012-10-23 18:44:32 +02:00
TODO.md Use r_sandbox_kill instead of kill 2013-03-02 19:44:10 +01:00

    ____  ___  ___  ___ ____  ___    ____
   |  _ \/   \|   \/   \  _ \/ _ \  |__  \
   |    (  V  | |  ) V  |   (   _/   / __/ 
   |__\__|_|__|___/__|__|_\__|___|  |____|

                www.radare.org

                                  --pancake

Introduction

r2 is a rewrite from scratch of radare in order to provide a set of libraries and tools to work with binary files

This is the rewrite of radare (1.x branch) to provide a framework with a set of libraries and programs to work with binary data.

Radare project started as a forensics tool, an scriptable commandline hexadecimal editor able to open disk files, but later support for analyzing binaries, disassembling code, debugging programs, attaching to remove gdb servers, ..

radare2 is portable.

Architectures: x86, arm, mips, ppc, java, dalvik, arc, avr, bf, csr, dcpu16, m68k, msil, sh, sparc

File Formats: dex, elf, elf64, filesystem, java, fatmach0, mach0, mach0-64, MZ, PE, PE+, plan9, dyldcache

Operating Systems: Android, GNU/Linux, [Net|Free|Open]BSD, iOS, OSX, QNX, w32, w64, Solaris.

Bindings: Vala/Genie, Python, NodeJS, LUA, Go, Perl, Guile, php5, newlisp, Ruby, Java

Dependencies

radare2 can be built without any special dependency, just use make and get a working toolchain (gcc, clang, ..)

Optionally you can use libewf for loading EnCase disk images.

To build the bindings you need valabind, g++ and swig2.

Install

Easiest way to install radare2 from git is by running the following command:

$ sys/install.sh

Uninstall

In case of poluted filesystem you can uninstall current version or remove all previous installations:

$ make uninstall
$ make purge

Bindings

All language bindings are under the r2-bindings directory. You will need to install swig2 and valabind in order to build the bindings for Python, LUA, etc..

APIs are defined in vapi files which are then translated to swig interfaces, nodejs-ffi or other and then compiled.

Easiest way to install the python bindings is to run:

$ sys/python.sh

If you want to use the NodeJS bindings just do:

$ npm install radare2.js

You may like to specify the installed version of radare2:

$ npm install radare2.js@0.9.2

Tests

There is a test suite that can be retrieved by running:

$ make tests

Documentation

There is no formal documentation of r2 yet. Not all commands are compatible with radare1, so the best way to learn how to do stuff in r2 is by reading the examples from the web and appending '?' to every command you are interested on.

Commands are small mnemonics of few characters and there is some extra syntax sugar that makes the shell much more pleasant for scripting and interacting with the apis.

Webserver

radare2 comes with an embedded webserver that serves a pure html/js interface that sends ajax queries to the core and aims to implement an usable UI for phones, tablets and desktops.

$ r2 -c=H /bin/ls

Pointers

Website: http://www.radare.org/

IRC: irc.freenode.net #radare

Twitter: @radareorg