Skip to main content

Python bindings to Ghidra's SLEIGH library

Project description

pypcode Build Status

Machine code disassembly and IR translation library for Python using the excellent SLEIGH library from the Ghidra framework. Primarily for use in angr.

Quick Start

This package can be installed on Linux, macOS, and Windows platforms for recent versions of both CPython and PyPy. You will need a working compiler and CMake to build the bindings.

Install with PIP+Git via:

python -m pip install --user git+https://github.com/angr/pypcode

You can now invoke the pypcode module from command line to translate supported machine code to P-code from command line. Run python -m pypcode --help for usage information. See module source for examples of using pypcode as a library.

Example

$ python -m pypcode -b x86:LE:64:default test-x64.bin
--------------------------------------------------------------------------------
00000000/2: XOR EAX,EAX
--------------------------------------------------------------------------------
  0: CF = 0x0
  1: OF = 0x0
  2: EAX = EAX ^ EAX
  3: RAX = zext(EAX)
  4: SF = EAX s< 0x0
  5: ZF = EAX == 0x0
  6: unique[0x2580:4] = EAX & 0xff
  7: unique[0x2590:1] = popcount(unique[0x2580:4])
  8: unique[0x25a0:1] = unique[0x2590:1] & 0x1
  9: PF = unique[0x25a0:1] == 0x0

--------------------------------------------------------------------------------
00000002/2: CMP ESI,EAX
--------------------------------------------------------------------------------
  0: CF = ESI < EAX
  1: OF = sborrow(ESI, EAX)
  2: unique[0x5180:4] = ESI - EAX
  3: SF = unique[0x5180:4] s< 0x0
  4: ZF = unique[0x5180:4] == 0x0
  5: unique[0x2580:4] = unique[0x5180:4] & 0xff
  6: unique[0x2590:1] = popcount(unique[0x2580:4])
  7: unique[0x25a0:1] = unique[0x2590:1] & 0x1
  8: PF = unique[0x25a0:1] == 0x0

--------------------------------------------------------------------------------
00000004/2: JBE 0x17
--------------------------------------------------------------------------------
  0: unique[0x18f0:1] = CF || ZF
  1: if (unique[0x18f0:1]) goto ram[0x17:8]

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

pypcode-0.0.4.tar.gz (1.7 MB view hashes)

Uploaded Source

Built Distributions

pypcode-0.0.4-pp37-pypy37_pp73-win32.whl (15.6 MB view hashes)

Uploaded PyPy Windows x86

pypcode-0.0.4-pp37-pypy37_pp73-manylinux2010_x86_64.whl (15.7 MB view hashes)

Uploaded PyPy manylinux: glibc 2.12+ x86-64

pypcode-0.0.4-pp37-pypy37_pp73-macosx_10_9_x86_64.whl (15.6 MB view hashes)

Uploaded PyPy macOS 10.9+ x86-64

pypcode-0.0.4-pp36-pypy36_pp73-win32.whl (15.6 MB view hashes)

Uploaded PyPy Windows x86

pypcode-0.0.4-pp36-pypy36_pp73-manylinux2010_x86_64.whl (15.7 MB view hashes)

Uploaded PyPy manylinux: glibc 2.12+ x86-64

pypcode-0.0.4-pp36-pypy36_pp73-macosx_10_9_x86_64.whl (15.6 MB view hashes)

Uploaded PyPy macOS 10.9+ x86-64

pypcode-0.0.4-cp39-cp39-win_amd64.whl (15.6 MB view hashes)

Uploaded CPython 3.9 Windows x86-64

pypcode-0.0.4-cp39-cp39-win32.whl (15.6 MB view hashes)

Uploaded CPython 3.9 Windows x86

pypcode-0.0.4-cp39-cp39-manylinux2010_x86_64.whl (15.7 MB view hashes)

Uploaded CPython 3.9 manylinux: glibc 2.12+ x86-64

pypcode-0.0.4-cp39-cp39-macosx_10_9_x86_64.whl (15.6 MB view hashes)

Uploaded CPython 3.9 macOS 10.9+ x86-64

pypcode-0.0.4-cp38-cp38-win_amd64.whl (15.6 MB view hashes)

Uploaded CPython 3.8 Windows x86-64

pypcode-0.0.4-cp38-cp38-win32.whl (15.6 MB view hashes)

Uploaded CPython 3.8 Windows x86

pypcode-0.0.4-cp38-cp38-manylinux2010_x86_64.whl (15.7 MB view hashes)

Uploaded CPython 3.8 manylinux: glibc 2.12+ x86-64

pypcode-0.0.4-cp38-cp38-macosx_10_9_x86_64.whl (15.6 MB view hashes)

Uploaded CPython 3.8 macOS 10.9+ x86-64

pypcode-0.0.4-cp37-cp37m-win_amd64.whl (15.6 MB view hashes)

Uploaded CPython 3.7m Windows x86-64

pypcode-0.0.4-cp37-cp37m-win32.whl (15.6 MB view hashes)

Uploaded CPython 3.7m Windows x86

pypcode-0.0.4-cp37-cp37m-manylinux2010_x86_64.whl (15.7 MB view hashes)

Uploaded CPython 3.7m manylinux: glibc 2.12+ x86-64

pypcode-0.0.4-cp37-cp37m-macosx_10_9_x86_64.whl (15.6 MB view hashes)

Uploaded CPython 3.7m macOS 10.9+ x86-64

pypcode-0.0.4-cp36-cp36m-win_amd64.whl (15.6 MB view hashes)

Uploaded CPython 3.6m Windows x86-64

pypcode-0.0.4-cp36-cp36m-win32.whl (15.6 MB view hashes)

Uploaded CPython 3.6m Windows x86

pypcode-0.0.4-cp36-cp36m-manylinux2010_x86_64.whl (15.7 MB view hashes)

Uploaded CPython 3.6m manylinux: glibc 2.12+ x86-64

pypcode-0.0.4-cp36-cp36m-macosx_10_9_x86_64.whl (15.6 MB view hashes)

Uploaded CPython 3.6m macOS 10.9+ x86-64

Supported by

AWS AWS Cloud computing and Security Sponsor Datadog Datadog Monitoring Fastly Fastly CDN Google Google Download Analytics Microsoft Microsoft PSF Sponsor Pingdom Pingdom Monitoring Sentry Sentry Error logging StatusPage StatusPage Status page