<?xml version="1.0" encoding="utf-8"?>
<?xml-stylesheet type="text/css" href="http://www.woodmann.com/collaborative/tools/skins/common/feed.css?97"?>
<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/">
	<channel>
		<title>Collaborative RCE Tool Library - Executable Diff Tools (including sub-categories)</title>
		<link>http://www.woodmann.com/collaborative/tools/index.php/Special:FeedListing/Executable_Diff_Tools/feed?feed_type=rss&amp;recursive=1</link>
		<description>Update Notification Feed for Category: Executable Diff Tools (and its sub-categories)</description>
		<language>en</language>
		<generator>MediaWiki 1.11.2 via dELTA feed generator</generator>
		<lastBuildDate>Fri, 03 Sep 2010 09:54:26 GMT</lastBuildDate>
		<item>
			<title>Tool Added: Patchdiff2</title>
			<link>http://www.woodmann.com/collaborative/tools/index.php/Patchdiff2</link>
			<description>&lt;P&gt;&lt;B&gt;Listed in categories:&lt;/B&gt;&amp;nbsp;&lt;I&gt;&lt;a href=&quot;http://www.woodmann.com/collaborative/tools/index.php/Category:Diff_Tools&quot;&gt;Diff Tools&lt;/a&gt;, &lt;a href=&quot;http://www.woodmann.com/collaborative/tools/index.php/Category:Executable_Diff_Tools&quot;&gt;Executable Diff Tools&lt;/a&gt;, &lt;a href=&quot;http://www.woodmann.com/collaborative/tools/index.php/Category:IDA_Extensions&quot;&gt;IDA Extensions&lt;/a&gt;&lt;/I&gt;&lt;/P&gt;&lt;p&gt;&lt;b&gt;Most recent version:&lt;/b&gt;&lt;br /&gt;
&lt;i&gt;2.0.8&lt;/i&gt;
&lt;/p&gt;&lt;p&gt;&lt;b&gt;Most recent release date:&lt;/b&gt;&lt;br /&gt;
&lt;i&gt;June 10, 2010&lt;/i&gt;
&lt;/p&gt;&lt;p&gt;&lt;b&gt;Description:&lt;/b&gt;&lt;br /&gt;
&lt;i&gt;PatchDiff2 is a plugin for the Windows version of the IDA dissassembler that can analyze two IDB files and find the differences between both. PatchDiff2 is free and fully integrates with the latest version of IDA (5.6). The plugin can perform the following tasks:&lt;br /&gt;&lt;br /&gt;- Display the list of identical functions&lt;br /&gt;- Display the list of matched functions&lt;br /&gt;- Display the list of unmatched functions (with the CRC)&lt;br /&gt;- Display a flow graph for identical and matched functions&lt;br /&gt;&lt;br /&gt;The main purpose of this plugin is to be fast and give accurate results when working on a security patch or a hotfix. Therefore this tool is not made to find similar functions between two different programs. Patchdiff2 supports all processors that IDA can handle and is available in two versions: 32 bit and a 64 bit.&lt;/i&gt;
&lt;/p&gt;</description>
			<pubDate>Thu, 10 Jun 2010 15:58:02 GMT</pubDate>								</item>
		<item>
			<title>Tool Updated: TurboDiff</title>
			<link>http://www.woodmann.com/collaborative/tools/index.php/TurboDiff</link>
			<description>&lt;P&gt;&lt;B&gt;Listed in categories:&lt;/B&gt;&amp;nbsp;&lt;I&gt;&lt;a href=&quot;http://www.woodmann.com/collaborative/tools/index.php/Category:Executable_Diff_Tools&quot;&gt;Executable Diff Tools&lt;/a&gt;, &lt;a href=&quot;http://www.woodmann.com/collaborative/tools/index.php/Category:IDA_Extensions&quot;&gt;IDA Extensions&lt;/a&gt;&lt;/I&gt;&lt;/P&gt;&lt;p&gt;&lt;b&gt;Most recent version:&lt;/b&gt;&lt;br /&gt;
&lt;i&gt;1.01&lt;/i&gt;
&lt;/p&gt;&lt;p&gt;&lt;b&gt;Most recent release date:&lt;/b&gt;&lt;br /&gt;
&lt;i&gt;October 14, 2009&lt;/i&gt;
&lt;/p&gt;&lt;p&gt;&lt;b&gt;Description:&lt;/b&gt;&lt;br /&gt;
&lt;i&gt;Turbodiff is a binary diffing tool developed as an IDA plugin. It discovers and analyzes differences between the functions of two binaries.&lt;/i&gt;
&lt;/p&gt;</description>
			<pubDate>Thu, 15 Oct 2009 14:25:10 GMT</pubDate>								</item>
		<item>
			<title>Tool Updated: BinDiff</title>
			<link>http://www.woodmann.com/collaborative/tools/index.php/BinDiff</link>
			<description>&lt;P&gt;&lt;B&gt;Listed in categories:&lt;/B&gt;&amp;nbsp;&lt;I&gt;&lt;a href=&quot;http://www.woodmann.com/collaborative/tools/index.php/Category:Executable_Diff_Tools&quot;&gt;Executable Diff Tools&lt;/a&gt;, &lt;a href=&quot;http://www.woodmann.com/collaborative/tools/index.php/Category:IDA_Extensions&quot;&gt;IDA Extensions&lt;/a&gt;&lt;/I&gt;&lt;/P&gt;&lt;p&gt;&lt;b&gt;Most recent version:&lt;/b&gt;&lt;br /&gt;
&lt;i&gt;2.1&lt;/i&gt;
&lt;/p&gt;&lt;p&gt;&lt;b&gt;Most recent release date:&lt;/b&gt;&lt;br /&gt;
&lt;i&gt;2009&lt;/i&gt;
&lt;/p&gt;&lt;p&gt;&lt;b&gt;Description:&lt;/b&gt;&lt;br /&gt;
&lt;i&gt;A very powerful executable file diffing tool, in the form of an IDA Pro plugin.&lt;/i&gt;
&lt;/p&gt;</description>
			<pubDate>Sat, 13 Jun 2009 10:14:36 GMT</pubDate>								</item>
		<item>
			<title>Tool Updated: IDACompare</title>
			<link>http://www.woodmann.com/collaborative/tools/index.php/IDACompare</link>
			<description>&lt;P&gt;&lt;B&gt;Listed in categories:&lt;/B&gt;&amp;nbsp;&lt;I&gt;&lt;a href=&quot;http://www.woodmann.com/collaborative/tools/index.php/Category:Executable_Diff_Tools&quot;&gt;Executable Diff Tools&lt;/a&gt;, &lt;a href=&quot;http://www.woodmann.com/collaborative/tools/index.php/Category:IDA_Extensions&quot;&gt;IDA Extensions&lt;/a&gt;&lt;/I&gt;&lt;/P&gt;&lt;p&gt;&lt;b&gt;Most recent version:&lt;/b&gt;&lt;br /&gt;
&lt;i&gt;5.4&lt;/i&gt;
&lt;/p&gt;&lt;p&gt;&lt;b&gt;Most recent release date:&lt;/b&gt;&lt;br /&gt;
&lt;i&gt;March 5, 2009&lt;/i&gt;
&lt;/p&gt;&lt;p&gt;&lt;b&gt;Description:&lt;/b&gt;&lt;br /&gt;
&lt;i&gt;IDACompare is a plugin designed to compare and match up equivalent functions across two IDA databases. IDACompare was primarily designed for analyzing changes across malcode variants, it should also find good use when conducting patch analysis.&lt;br /&gt;&lt;br /&gt;Once function matches have been made, names can be ported across disassemblies, or sequentially renamed in both.&lt;br /&gt;&lt;br /&gt;Project also implements a signature scanner, letting you build your own listing of known functions.&lt;/i&gt;
&lt;/p&gt;</description>
			<pubDate>Fri, 06 Mar 2009 09:20:11 GMT</pubDate>								</item>
		<item>
			<title>Tool Added: DarunGrim</title>
			<link>http://www.woodmann.com/collaborative/tools/index.php/DarunGrim</link>
			<description>&lt;P&gt;&lt;B&gt;Listed in categories:&lt;/B&gt;&amp;nbsp;&lt;I&gt;&lt;a href=&quot;http://www.woodmann.com/collaborative/tools/index.php/Category:Executable_Diff_Tools&quot;&gt;Executable Diff Tools&lt;/a&gt;&lt;/I&gt;&lt;/P&gt;&lt;p&gt;&lt;b&gt;Most recent version:&lt;/b&gt;&lt;br /&gt;
&lt;i&gt;2.0&lt;/i&gt;
&lt;/p&gt;&lt;p&gt;&lt;b&gt;Most recent release date:&lt;/b&gt;&lt;br /&gt;
&lt;i&gt;February 7, 2009&lt;/i&gt;
&lt;/p&gt;&lt;p&gt;&lt;b&gt;Description:&lt;/b&gt;&lt;br /&gt;
&lt;i&gt;DarunGrim is a binary diffing tool. DarunGrim is a free diffing tool which provides binary diffing functionality.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Binary diffing is a powerful technique to reverse-engineer patches released by software vendors like Microsoft. Especially by analyzing security patches you can dig into the details of the vulnerabilities it's fixing. You can use that information to learn what causes software break. Also that information can help you write some protection codes for those specific vulnerabilities. It's also used to write 1-day exploits by malware writers or security researchers. &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;This binary diffing technique is especially useful for Microsoft binaries. Not like other vendors they are releasing patch regularly and the patched vulnerabilities are relatively concentrated in small areas in the code. That makes the patched part more visible and apparent to the patch analyzers. There is a &amp;quot;eEye Binary Diffing Suites&amp;quot; released back in 2006 and it's widely used by security researchers to identify vulnerabilities. Even though it's free and opensource, it's powerful enough to be used for that vulnerabilities hunting purpose. Now I'm releasing DarunGrim2 which is a C++ port of original python codes. DarunGrim2 is way faster than original DarunGrim.&lt;/i&gt;
&lt;/p&gt;</description>
			<pubDate>Mon, 09 Feb 2009 12:36:06 GMT</pubDate>								</item>
		<item>
			<title>Tool Updated: PatchDiff</title>
			<link>http://www.woodmann.com/collaborative/tools/index.php/PatchDiff</link>
			<description>&lt;P&gt;&lt;B&gt;Listed in categories:&lt;/B&gt;&amp;nbsp;&lt;I&gt;&lt;a href=&quot;http://www.woodmann.com/collaborative/tools/index.php/Category:Executable_Diff_Tools&quot;&gt;Executable Diff Tools&lt;/a&gt;&lt;/I&gt;&lt;/P&gt;&lt;p&gt;&lt;b&gt;Most recent version:&lt;/b&gt;&lt;br /&gt;
&lt;i&gt;2.0.5&lt;/i&gt;
&lt;/p&gt;&lt;p&gt;&lt;b&gt;Most recent release date:&lt;/b&gt;&lt;br /&gt;
&lt;i&gt;August 19, 2008&lt;/i&gt;
&lt;/p&gt;&lt;p&gt;&lt;b&gt;Description:&lt;/b&gt;&lt;br /&gt;
&lt;i&gt;PatchDiff2 is a plugin for the Windows version of the IDA dissassembler that can analyze two IDB files and find the differences between both. PatchDiff2 is free and fully integrates with the latest version of IDA (5.2).&lt;br /&gt;The plugin can perform the following tasks :&lt;br /&gt;&lt;br /&gt;    * Display the list of identical functions&lt;br /&gt;    * Display the list of matched functions&lt;br /&gt;    * Display the list of unmatched functions (with the CRC)&lt;br /&gt;    * Display a flow graph for identical and matched functions &lt;br /&gt;&lt;br /&gt;The main purpose of this plugin is to be fast and give accurate results when working on a security patch or a hotfix. Therefore this tool is not made to find similar functions between two different programs.&lt;br /&gt;Patchdiff2 supports all processors that IDA can handle and is available in two versions: 32 bit and a 64 bit.&lt;br /&gt;&lt;br /&gt;Update:&lt;br /&gt;&lt;br /&gt;08/19/2008: PatchDiff 2.0.5 released:&lt;br /&gt;&lt;br /&gt;    * Adds string references to the signature&lt;br /&gt;    * Fixes IPC close when option is disabled &lt;br /&gt;&lt;br /&gt;07/22/2008:PatchDiff 2.0.4 released:&lt;br /&gt;&lt;br /&gt;    * Requires at least IDA 5.2&lt;br /&gt;    * Adds save backup results to IDB&lt;br /&gt;    * Adds Unmatch/Set match/Switch match submenus&lt;br /&gt;    * Adds &amp;quot;pipe&amp;quot; support to keep second IDA instance open&lt;br /&gt;          o menu Options/PatchDiff2 to disable/enable it per IDB&lt;br /&gt;          o registry HKLM\SOFTWARE\Tenable\PatchDiff2 IPC (DWORD) for the default setting &lt;br /&gt;    * Uses demangled function names&lt;br /&gt;    * Ignores duplicated names&lt;/i&gt;
&lt;/p&gt;</description>
			<pubDate>Mon, 26 Jan 2009 14:28:58 GMT</pubDate>								</item>
		<item>
			<title>Tool Updated: Pynary</title>
			<link>http://www.woodmann.com/collaborative/tools/index.php/Pynary</link>
			<description>&lt;P&gt;&lt;B&gt;Listed in categories:&lt;/B&gt;&amp;nbsp;&lt;I&gt;&lt;a href=&quot;http://www.woodmann.com/collaborative/tools/index.php/Category:Deobfuscation_Tools&quot;&gt;Deobfuscation Tools&lt;/a&gt;, &lt;a href=&quot;http://www.woodmann.com/collaborative/tools/index.php/Category:Diff_Tools&quot;&gt;Diff Tools&lt;/a&gt;, &lt;a href=&quot;http://www.woodmann.com/collaborative/tools/index.php/Category:Exe_Analyzers&quot;&gt;Exe Analyzers&lt;/a&gt;, &lt;a href=&quot;http://www.woodmann.com/collaborative/tools/index.php/Category:Executable_Diff_Tools&quot;&gt;Executable Diff Tools&lt;/a&gt;, &lt;a href=&quot;http://www.woodmann.com/collaborative/tools/index.php/Category:Programming_Libraries&quot;&gt;Programming Libraries&lt;/a&gt;, &lt;a href=&quot;http://www.woodmann.com/collaborative/tools/index.php/Category:Reverse_Engineering_Frameworks&quot;&gt;Reverse Engineering Frameworks&lt;/a&gt;&lt;/I&gt;&lt;/P&gt;&lt;p&gt;&lt;b&gt;Most recent version:&lt;/b&gt;&lt;br /&gt;
&lt;i&gt;0.0.1&lt;/i&gt;
&lt;/p&gt;&lt;p&gt;&lt;b&gt;Most recent release date:&lt;/b&gt;&lt;br /&gt;

&lt;/p&gt;&lt;p&gt;&lt;b&gt;Description:&lt;/b&gt;&lt;br /&gt;
&lt;i&gt;pynary will become a powerful platform independent framework for binary code analysis.&lt;br /&gt;&lt;br /&gt;The initial goal is to the implementation of function signature matching using graph isomorphism and an extensible 'write-your-own-heuristic' model to allow tweaks for particular targets. It will also identify standard library global constants and structure where possible.&lt;br /&gt;&lt;br /&gt;Once the initial goal is achieved, a number of cool features are planned:&lt;br /&gt;&lt;br /&gt;    * stack frame analysis&lt;br /&gt;    * un-inliner&lt;br /&gt;    * exception handling parsing/analysis&lt;br /&gt;    * 'functionally equivalent' matching&lt;br /&gt;    * c++ template function matching&lt;br /&gt;    * meta-data transfer between IDBs&lt;br /&gt;    * c++ class reconstruction (with/without RTTI)&lt;br /&gt;    * ... &lt;br /&gt;&lt;br /&gt;This project is still in its infancy, and looking for volunteers.&lt;/i&gt;
&lt;/p&gt;</description>
			<pubDate>Tue, 15 Jan 2008 07:13:58 GMT</pubDate>								</item>
		<item>
			<title>Tool Added: EEye Binary Diffing Suite (EBDS)</title>
			<link>http://www.woodmann.com/collaborative/tools/index.php/EEye_Binary_Diffing_Suite_%28EBDS%29</link>
			<description>&lt;P&gt;&lt;B&gt;Listed in categories:&lt;/B&gt;&amp;nbsp;&lt;I&gt;&lt;a href=&quot;http://www.woodmann.com/collaborative/tools/index.php/Category:Executable_Diff_Tools&quot;&gt;Executable Diff Tools&lt;/a&gt;&lt;/I&gt;&lt;/P&gt;&lt;p&gt;&lt;b&gt;Most recent version:&lt;/b&gt;&lt;br /&gt;
&lt;i&gt;1.0.5&lt;/i&gt;
&lt;/p&gt;&lt;p&gt;&lt;b&gt;Most recent release date:&lt;/b&gt;&lt;br /&gt;
&lt;i&gt;November 3, 2006&lt;/i&gt;
&lt;/p&gt;&lt;p&gt;&lt;b&gt;Description:&lt;/b&gt;&lt;br /&gt;
&lt;i&gt;The eEye Binary Diffing Suite (EBDS) is a free and open source set of utilities for performing automated binary differential analysis.&lt;/i&gt;
&lt;/p&gt;</description>
			<pubDate>Thu, 18 Oct 2007 19:31:33 GMT</pubDate>								</item>
	</channel>
</rss>