Automatic unpacking with Qiling framework
Welcome folks, today I want to show you a few tricks about automatic unpacking on elf executables with qiling framework !
EDIT: This Write-Up is working only with a particular (and ancient) version of the qiling framwork. So if you want a full working poc, run the final script in my docker image.
Introduction to automatic unpacking The automatic unpacking is the art of extracting certain informations from an obfuscated executable, to subsquently make another binary more easily readable.