Chisel 
logo  Computer Human Interaction & Software 
Engineering Lab

An Exploratory Study of Software Reverse Engineering in a Security Context

Christoph Treude, Fernando Figueira Filho, Margaret-Anne Storey, Martin Salois, "An Exploratory Study of Software Reverse Engineering in a Security Context", 18th Working Conference on Reverse Engineering (WCRE), pp. 184-188, 2011

Project:
Social Media and Software Engineering (NSERC/IBM/DND)

External Link:
Link to Publication

Abstract and additional information:

Illegal cyberspace activities are increasing rapidly and many software engineers are using reverse engineering methods to respond to attacks. The security-sensitive nature of these tasks, such as the understanding of malware or the decryption of encrypted content, brings unique challenges to reverse engineering: work has to be done offline, files can rarely be shared, time pressure is immense, and there is a lack of tool and process support for capturing and sharing the knowledge obtained while trying to understand plain assembly code. To help us gain an understanding of this reverse engineering work, we report on an exploratory study done in a security context at a research and development government organization to explore their work processes, tools, and artifacts. In this paper, we identify challenges, such as the management and navigation of a myriad of artifacts, and we conclude by offering suggestions for tool and process improvements.

Bibtex:

@article{10.1109/WCRE.2011.30,
author = {Christoph Treude and Fernando Figueira Filho
and Margaret-Anne Storey and Martin Salois},
title = {An Exploratory Study of Software Reverse Engineering
in a Security Context},
journal ={Working Conference on Reverse Engineering},
volume = {0},
issn = {1095-1350},
year = {2011},
pages = {184-188},
doi = {http://doi.ieeecomputersociety.org/10.1109/WCRE.2011.30},
publisher = {IEEE Computer Society},
address = {Los Alamitos, CA, USA},
}