Skip to content

Comment on We hid backdoors in ~40MB binaries and asked AI + Ghidra to find themparent

Comments

When I was developing my ghidra-cli tool for LLMs to use, I was using crackmes as tests and it had no problem getting through obfuscation as long as it was prompted about it. In practice when reverse engineering real software it can sometimes spin in circles for a while until it finally notices that it's dealing with obfuscated code, but as long as you update your CLAUDE.md/whatever with its findings, it generally moves smoothly from then on.

Is it also possible that crackme solutions were already in the training data?

I used the latest submissions from sites like crackmes.ones which were days or weeks old to guard against that.

AboutSource Built by g1lg1l

Hackerly is an independent reader for Hacker News, built on the public HN API. Not affiliated with Y Combinator.