2015-10-13 23:21:27 +08:00
|
|
|
```
|
2012-10-23 07:03:26 +08:00
|
|
|
____ ___ ___ ___ ____ ___ ____
|
|
|
|
| _ \/ \| \/ \ _ \/ _ \ |__ \
|
2017-07-27 05:15:41 +08:00
|
|
|
| ( V | | ) V | ( _/ / __/
|
2012-10-23 07:03:26 +08:00
|
|
|
|__\__|_|__|___/__|__|_\__|___| |____|
|
|
|
|
|
|
|
|
www.radare.org
|
|
|
|
|
|
|
|
--pancake
|
2015-10-13 23:21:27 +08:00
|
|
|
```
|
2012-10-23 07:03:26 +08:00
|
|
|
|
2015-07-28 06:38:43 +08:00
|
|
|
| | |
|
2015-07-26 18:38:59 +08:00
|
|
|
|----------|---------------------------------------------------------------------|
|
2015-07-28 06:38:43 +08:00
|
|
|
| **Jenkins** | [![Build Status](http://ci.rada.re/buildStatus/icon?job=radare2)](http://ci.rada.re/job/radare2)|
|
|
|
|
| **TravisCI** | [![Build Status](https://travis-ci.org/radare/radare2.svg?branch=master)](https://travis-ci.org/radare/radare2)|
|
2016-02-29 17:41:27 +08:00
|
|
|
| **AppVeyor** | [![Build Status](https://ci.appveyor.com/api/projects/status/v9bxvsb1p6c3cmf9/branch/master?svg=true)](https://ci.appveyor.com/project/radare/radare2-shvdd)|
|
2015-07-28 06:38:43 +08:00
|
|
|
| **Coverity** | [![Build Status](https://scan.coverity.com/projects/416/badge.svg)](https://scan.coverity.com/projects/416) |
|
2012-10-23 07:03:26 +08:00
|
|
|
# Introduction
|
|
|
|
|
|
|
|
r2 is a rewrite from scratch of radare in order to provide
|
2015-07-28 06:38:43 +08:00
|
|
|
a set of libraries and tools to work with binary files.
|
2012-10-23 07:03:26 +08:00
|
|
|
|
2016-04-06 22:33:51 +08:00
|
|
|
Radare project started as a forensics tool, a scriptable
|
2012-10-23 07:03:26 +08:00
|
|
|
commandline hexadecimal editor able to open disk files,
|
|
|
|
but later support for analyzing binaries, disassembling
|
2013-03-21 20:52:29 +08:00
|
|
|
code, debugging programs, attaching to remote gdb servers, ..
|
2012-10-23 07:03:26 +08:00
|
|
|
|
2015-07-26 18:38:59 +08:00
|
|
|
radare2 is portable.
|
2012-10-23 07:03:26 +08:00
|
|
|
|
2015-07-26 18:38:59 +08:00
|
|
|
* **Architectures:**
|
2017-01-25 07:06:44 +08:00
|
|
|
* 6502, 8051, CRIS, H8/300, LH5801, T8200, arc, arm, avr, bf, blackfin, xap,
|
2015-12-30 01:46:22 +08:00
|
|
|
dalvik, dcpu16, gameboy, i386, i4004, i8080, m68k, malbolge, mips, msil,
|
2015-08-05 08:47:25 +08:00
|
|
|
msp430, nios II, powerpc, rar, sh, snes, sparc, tms320 (c54x c55x c55+), V810,
|
2015-10-31 13:31:57 +08:00
|
|
|
x86-64, zimg, risc-v.
|
2012-10-23 07:03:26 +08:00
|
|
|
|
2015-07-26 18:38:59 +08:00
|
|
|
* **File Formats:**
|
2015-09-09 17:15:54 +08:00
|
|
|
* bios, CGC, dex, elf, elf64, filesystem, java, fatmach0, mach0,
|
2017-07-27 05:15:41 +08:00
|
|
|
mach0-64, MZ, PE, PE+, TE, COFF, plan9, dyldcache, Commodore VICE emulator,
|
2016-01-05 02:45:00 +08:00
|
|
|
Game Boy (Advance), Nintendo DS ROMs and Nintendo 3DS FIRMs.
|
2012-10-23 07:03:26 +08:00
|
|
|
|
2015-07-26 18:38:59 +08:00
|
|
|
* **Operating Systems:**
|
|
|
|
* Android, GNU/Linux, [Net|Free|Open]BSD, iOS, OSX, QNX, w32,
|
|
|
|
w64, Solaris, Haiku, FirefoxOS
|
2012-10-23 07:03:26 +08:00
|
|
|
|
2015-07-26 18:38:59 +08:00
|
|
|
* **Bindings:**
|
2017-04-09 07:39:05 +08:00
|
|
|
* Vala/Genie, Python (2, 3), NodeJS, Lua, Go, Perl,
|
2016-09-25 06:59:55 +08:00
|
|
|
Guile, php5, newlisp, Ruby, Java, OCaml, ...
|
2012-10-23 07:03:26 +08:00
|
|
|
|
|
|
|
# Dependencies
|
|
|
|
|
|
|
|
radare2 can be built without any special dependency, just
|
2013-06-14 08:51:33 +08:00
|
|
|
use make and get a working toolchain (gcc, clang, tcc, ..)
|
2012-10-23 07:03:26 +08:00
|
|
|
|
|
|
|
Optionally you can use libewf for loading EnCase disk images.
|
|
|
|
|
2013-06-14 08:51:33 +08:00
|
|
|
To build the bindings you need latest valabind, g++ and swig2.
|
2012-10-23 07:03:26 +08:00
|
|
|
|
|
|
|
# Install
|
|
|
|
|
2014-11-23 03:13:02 +08:00
|
|
|
The easiest way to install radare2 from git is by running
|
2012-10-23 07:03:26 +08:00
|
|
|
the following command:
|
|
|
|
|
2017-05-15 07:17:29 +08:00
|
|
|
$ sys/install.sh
|
2012-10-23 07:03:26 +08:00
|
|
|
|
2015-08-31 05:26:35 +08:00
|
|
|
If you want to install radare2 in the home directory without
|
|
|
|
using root privileges and sudo, simply run:
|
|
|
|
|
2017-05-15 07:17:29 +08:00
|
|
|
$ sys/user.sh
|
2015-08-31 05:26:35 +08:00
|
|
|
|
2017-05-15 06:39:41 +08:00
|
|
|
# Building with meson + ninja
|
|
|
|
|
|
|
|
The sys/install.sh method uses acr+make to build r2 from sources, which is the default
|
2017-05-15 08:53:10 +08:00
|
|
|
and recommended way, but there's also a work-in-progress support for Meson.
|
2017-05-15 06:39:41 +08:00
|
|
|
|
2017-07-27 05:15:41 +08:00
|
|
|
Run first the configuration process:
|
|
|
|
|
|
|
|
$ ./configure
|
|
|
|
|
2017-05-15 08:53:10 +08:00
|
|
|
You can install last version of meson and ninja using r2pm:
|
|
|
|
|
|
|
|
$ r2pm -i meson
|
|
|
|
$ r2pm -r make meson
|
|
|
|
$ r2pm -r make meson-symstall
|
|
|
|
|
|
|
|
Or just run those lines if you have them available in PATH:
|
|
|
|
|
|
|
|
$ make meson # will run make meson-config automatically
|
|
|
|
$ sudo make meson-symstall # symstall the meson build into PREFIX (/usr)
|
|
|
|
$ sudo make meson-uninstall # uninstall the meson installation
|
|
|
|
|
|
|
|
The PREFIX is inherited from the last run of ./configure, so it's recommended to run
|
|
|
|
sys/install.sh at least once to autodetect this, this step will end up into meson.
|
2017-05-15 06:39:41 +08:00
|
|
|
|
|
|
|
At the moment, the meson build system doesnt supports much configuration options and it
|
|
|
|
is not able to build all the plugins, it has been tested to work on the following hosts:
|
|
|
|
|
|
|
|
* Rpi3-arm32
|
|
|
|
* macOS-x86-64
|
|
|
|
* Termux/Android-arm64
|
|
|
|
* VoidLinux-x86-64
|
|
|
|
* Windows-x86-64
|
|
|
|
|
2017-09-29 04:06:58 +08:00
|
|
|
# Update
|
|
|
|
|
2017-11-14 01:57:22 +08:00
|
|
|
To update Radare2 system wide you don't need to uninstall or pull,
|
2017-09-29 04:06:58 +08:00
|
|
|
just re-run:
|
|
|
|
|
|
|
|
$ sys/install.sh
|
|
|
|
|
2017-11-14 01:57:22 +08:00
|
|
|
If you installed Radare2 in the home directory,
|
|
|
|
just re-run:
|
|
|
|
|
|
|
|
$ sys/user.sh
|
|
|
|
|
2012-10-24 00:44:32 +08:00
|
|
|
# Uninstall
|
|
|
|
|
2014-11-23 03:13:02 +08:00
|
|
|
In case of a polluted filesystem you can uninstall the current
|
2013-06-14 08:51:33 +08:00
|
|
|
version or remove all previous installations:
|
2012-10-24 00:44:32 +08:00
|
|
|
|
2017-05-15 07:17:29 +08:00
|
|
|
$ make uninstall
|
|
|
|
$ make purge
|
2012-10-24 00:44:32 +08:00
|
|
|
|
2016-06-09 16:45:47 +08:00
|
|
|
# Package manager
|
|
|
|
|
2017-07-27 05:15:41 +08:00
|
|
|
Radare2 has its own package manager - r2pm. It's packages
|
2016-06-09 16:45:47 +08:00
|
|
|
repository is on [GitHub too](https://github.com/radare/radare2-pm).
|
|
|
|
To start to use it for the first time you need to initialize packages:
|
|
|
|
|
2017-05-15 07:17:29 +08:00
|
|
|
$ r2pm init
|
2016-06-09 16:45:47 +08:00
|
|
|
|
2017-05-15 09:22:04 +08:00
|
|
|
Refresh the packages database before installing any package:
|
2016-06-09 16:45:47 +08:00
|
|
|
|
2017-05-15 07:17:29 +08:00
|
|
|
$ r2pm update
|
2016-06-09 16:45:47 +08:00
|
|
|
|
2017-05-15 09:22:04 +08:00
|
|
|
To install a package use the following command:
|
2016-06-09 16:45:47 +08:00
|
|
|
|
2017-05-15 07:17:29 +08:00
|
|
|
$ r2pm install [package name]
|
2016-06-09 16:45:47 +08:00
|
|
|
|
2012-10-23 07:03:26 +08:00
|
|
|
# Bindings
|
|
|
|
|
|
|
|
All language bindings are under the r2-bindings directory.
|
2015-07-27 00:05:39 +08:00
|
|
|
You will need to install swig and valabind in order to
|
2017-05-14 21:05:29 +08:00
|
|
|
build the bindings for Python, Lua, etc..
|
2012-10-23 07:03:26 +08:00
|
|
|
|
|
|
|
APIs are defined in vapi files which are then translated
|
|
|
|
to swig interfaces, nodejs-ffi or other and then compiled.
|
|
|
|
|
2014-11-23 03:13:02 +08:00
|
|
|
The easiest way to install the python bindings is to run:
|
2012-10-23 07:03:26 +08:00
|
|
|
|
2017-08-15 19:01:08 +08:00
|
|
|
$ r2pm install lang-python2 #lang-python3 for python3 bindings
|
2017-05-15 09:22:04 +08:00
|
|
|
$ r2pm install r2api-python
|
2017-11-15 23:44:24 +08:00
|
|
|
$ r2pm install r2pipe-py
|
2012-10-23 07:03:26 +08:00
|
|
|
|
2015-07-27 00:05:39 +08:00
|
|
|
In addition there are `r2pipe` bindings, which are an API
|
|
|
|
interface to interact with the prompt, passing commands
|
|
|
|
and receivent the output as a string, many commands support
|
|
|
|
JSON output, so it's integrated easily with many languages
|
|
|
|
in order to deserialize it into native objects.
|
2012-10-23 07:03:26 +08:00
|
|
|
|
2017-05-15 07:17:29 +08:00
|
|
|
$ npm install r2pipe # NodeJS
|
|
|
|
$ gem install r2pipe # Ruby
|
|
|
|
$ pip install r2pipe # Python
|
|
|
|
$ opam install radare2 # OCaml
|
2012-10-23 07:03:26 +08:00
|
|
|
|
2015-07-28 06:38:43 +08:00
|
|
|
And also for Go, Rust, Swift, D, .NET, Java, NewLisp, Perl, Haskell,
|
2016-09-25 06:59:55 +08:00
|
|
|
Vala, OCaml, and many more to come!
|
2012-10-23 07:03:26 +08:00
|
|
|
|
2015-07-27 00:05:39 +08:00
|
|
|
# Regression Testsuite
|
2012-10-23 07:03:26 +08:00
|
|
|
|
2015-07-27 00:05:39 +08:00
|
|
|
Running `make tests` it will fetch the radare2-regressions
|
|
|
|
repository and run all the tests in order to verify that no
|
|
|
|
changes break a functionality.
|
2012-10-23 07:03:26 +08:00
|
|
|
|
2015-07-27 00:05:39 +08:00
|
|
|
We run those tests on every commit, and they are also
|
|
|
|
executed with ASAN and valgrind on different platforms
|
|
|
|
to catch other unwanted 'features'.
|
2012-10-23 07:03:26 +08:00
|
|
|
|
|
|
|
# Documentation
|
|
|
|
|
|
|
|
There is no formal documentation of r2 yet. Not all commands
|
|
|
|
are compatible with radare1, so the best way to learn how to
|
|
|
|
do stuff in r2 is by reading the examples from the web and
|
2014-11-23 03:13:02 +08:00
|
|
|
appending '?' to every command you are interested in.
|
2012-10-23 07:03:26 +08:00
|
|
|
|
|
|
|
Commands are small mnemonics of few characters and there is
|
|
|
|
some extra syntax sugar that makes the shell much more pleasant
|
|
|
|
for scripting and interacting with the apis.
|
|
|
|
|
2015-09-15 23:16:43 +08:00
|
|
|
You could also checkout the [radare2 book](https://radare.gitbooks.io/radare2book/content/).
|
2015-07-26 18:38:59 +08:00
|
|
|
|
2015-08-05 06:03:54 +08:00
|
|
|
# Coding Style
|
|
|
|
|
2015-10-03 21:09:10 +08:00
|
|
|
Look at [CONTRIBUTING.md](https://github.com/radare/radare2/blob/master/CONTRIBUTING.md).
|
2015-08-05 06:03:54 +08:00
|
|
|
|
2012-10-23 07:03:26 +08:00
|
|
|
# Webserver
|
|
|
|
|
|
|
|
radare2 comes with an embedded webserver that serves a pure
|
|
|
|
html/js interface that sends ajax queries to the core and
|
|
|
|
aims to implement an usable UI for phones, tablets and desktops.
|
|
|
|
|
2017-05-15 07:17:29 +08:00
|
|
|
$ r2 -c=H /bin/ls
|
2015-09-21 20:22:08 +08:00
|
|
|
|
|
|
|
To use the webserver on Windows, you require a cmd instance
|
2015-04-27 16:39:36 +08:00
|
|
|
with administrator rights. To start the webserver use command
|
|
|
|
in the project root.
|
|
|
|
|
2017-05-15 07:17:29 +08:00
|
|
|
> radare2.exe -c=H rax2.exe
|
2012-10-23 07:03:26 +08:00
|
|
|
|
|
|
|
# Pointers
|
|
|
|
|
|
|
|
Website: http://www.radare.org/
|
|
|
|
|
|
|
|
IRC: irc.freenode.net #radare
|
|
|
|
|
2017-05-15 07:17:29 +08:00
|
|
|
Telegram: https://t.me/radare
|
|
|
|
|
|
|
|
Matrix: @radare2:matrix.org
|
|
|
|
|
2012-10-23 07:03:26 +08:00
|
|
|
Twitter: @radareorg
|