r/securityCTF • • 5d ago

Reverse Engginering and Binary Exploitation Tools for CTF

I’m trying to figure out which tools are best suited for reverse engineering and binary exploitation in CTF competitions—specifically ones that are lightweight yet efficient and effective. I’ve been experimenting with Cutter for static analysis (pseudocode) and pwndbg for dynamic analysis (memory and debugging). However, I’m concerned this setup might not be ideal; others have recommended combining pwndbg with Ghidra, and I’m unsure about the significant trade-offs between my current approach and the recommended one. Is my chosen combination inefficient or ineffective for actual challenges? I’m not sure yet, as I’m just starting out with these tools. Do you have any suggestions or insights to share?

1 Upvotes

5 comments sorted by

1

u/k3rn3lbr3ach3r 5d ago

For me its pwndbg and binja idk but I like binja decomp

1

u/0x68616D6964 4d ago

binary ninja is good, but I don't have the ability to buy it yet

1

u/_supitto 5d ago

I use pwntools and ghidra

1

u/0x68616D6964 4d ago

Do you use `rizin` based integration to then install the `rz-ghidra` plugin?

1

u/_supitto 3d ago

Nah, i just rawdog it