| FazBrowse GitHub Viewer | Trending | | Home |
| Tools: [Download Repo ZIP] [Original HTTPS Page] |
Dockerized version of IDA Pro by Hex Rays. By wrapping IDA with an ultra-fast, minimal command line interface, this project is especially suitable for automating the use of IDAPython scripts and batch analysis.
This docker image is configured to have everything you need for a working IDA machine, ready to run scripts:
Legit IDA Pro (Linux version) with its installation password
docker run -it -v "$PWD":/project -w /project ida idal.py -Sexamples/hello.py -A file_to_reverse.exe
This command runs the IDAPython script "examples/hello.py" on the file "file_to_reverse.exe".
The command creates a volume in the docker container for the current directory and place it in "/project" path in the container. That way you can use the current directory as a source for the sample you want to reverse, the script you want to run, and to get output files out of IDA.
For IDA 64 bit files:
docker run -it -v "$PWD":/project -w /project ida idal64.py -Sexamples/hello.py -A file_to_reverse.exe
You can use any of the IDA command line arguments, except for GUI-related switches:
docker run -it -v "$PWD":/project -w /project ida idal.py [arg1] [arg2] [arg3]
You could also run IDA in the awful TVision terminal-GUI mode if you really want to. Just open a shell using:
docker run -it -v "$PWD":/project -w /project ida bash
And run the regular IDA binary (idal or idal64), it's already in the PATH:
idal arg1 arg2... idal64 arg1 arg2...
Just add the library you wish to the "requirements.txt" file before you build the Dockerfile
In Windows, docker has its problems parsing paths, so you'll need to add some '/' like this:
docker run -it -v "/$PWD":/project -w //project ida idal.py -Sexamples/hello.py -A file_to_reverse.exe
Or for 64 bit files:
docker run -it -v "/$PWD":/project -w //project ida idal64.py -Sexamples/hello.py -A file_to_reverse.exe
Tested only with IDA 6.9, but should work with some previous versions as well
| Back | FazBrowse Home | New Git URL |